Sign inSign up
Apache Superset

dhi.io/superset

Apache Superset 6.x

CIS
linux/amd64
debian 13
Tags:

6, 6-debian, 6-debian13, 6.1, 6.1-debian, 6.1-debian13, 6.1.0, 6.1.0-debian, 6.1.0-debian13

Index digest:

sha256:05891b4062d5cb9620a2dcb31edd3e39c5fb38cd03596adb346ba920370a6465

Manifest digest:

sha256:3b775181f35ef0068139be9b163ba455f1652f7504c95af8521453fa67afb130

Size

298.11 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/superset:6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/superset:6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/superset@sha256:dc928a3c81c9df6395750d1dd21735688b00f5c877ab05a5cd55052417f41a6c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/superset@sha256:a20227d87e9cd248171a19c11095f94a434fdbb1cc6558d2b7dfeed4bfe2721d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/superset@sha256:47d3c9b3a86896f459c0f55d00a8b2d4822c9266b73e36abf72125bf567855e9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/superset@sha256:a0c73f0a35692d299f409993e70e6b77b61914b6a47a62a2a8ba0875ccd60c01
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/superset@sha256:165a84cf787b200c1512e509936ce50d61a88a0e187e6326af527103b1d49c5f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/superset@sha256:1db2175274b84ff2574b60e21b14294a8d94f0c4f41eb96a2ff6e5f65ab454fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/superset@sha256:fb5b7557e30b078fe97d24324ff1fb9c64e983a80d94e95dd3c97cd4480c2290
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/superset@sha256:2ed5054e24749c190bbdbc9e615c7fa750301edee84498d8942975bf7f77a6d4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/superset@sha256:55dacc2d240c9bfa7ccc0eba06a0697ed47fe5d094f9518410fd9dc66e04c9f1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/superset@sha256:e80ba78fd2294a14af0c3ad226b657e3b4a470aa4dabb328ef4ca94c8c6e43bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/superset@sha256:115d47b2d7db0246bb2b7d639bfc26921b61c965023f566bb3392917d661eeac
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/superset@sha256:120bb17e6c24dd97bf5ca8772bab78798468059aff8af191a65502109d00d272
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/superset@sha256:43cffc4f0f3a1605eea34294394122d2f0d0b3e7112a4446bfd8aa1c46297dfc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/superset@sha256:f8c09946106c64be0eaf5e900a99fa9f13406d7d0691e65cb2c15dcf5135d8fd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/superset@sha256:bcd0ddca7a70912d1ce41553864406170b2b3d9da3effae58e37834f070b2b3a