Sign inSign up
Apache Superset

dhi.io/superset

Apache Superset 6.x

CIS
linux/amd64
debian 13
Tags:

6, 6-debian, 6-debian13, 6.1, 6.1-debian, 6.1-debian13, 6.1.0, 6.1.0-debian, 6.1.0-debian13

Index digest:

sha256:c9a841b4252e37ffd45452fc0cffc70d2c9f124fce7f10828867c0f76d0d7c6d

Manifest digest:

sha256:f0747ca868bf3003d554db8e8f017f972803ea8d63882c1b7ac5501f3a050faa

Size

298.05 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/superset:6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/superset:6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/superset@sha256:8f025c426f1899f8ec308be003f3f53b276a29e6bfdddf7341c33234e35ca699
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/superset@sha256:1a61307bbb3e7fa89c9636c7a40a2264100c52a397d2e321fc544fc862baaaf5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/superset@sha256:e9e6c07cdd3a288c243c40ddebee08209ca197f7ffe502be7fffa58874c633c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/superset@sha256:f29e2a22b5a35ecdbde57d56292dbca807e8c0e160bda1406dc5bfa397869536
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/superset@sha256:18d41926f20adc9261ffa7d266d714e868202fcf1ccd6f1e66728e83a2216128
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/superset@sha256:fbced133bce35e628b07c5f5a55c10d4f2bd97acf64af17f12f452d088ac58f9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/superset@sha256:a2324d3cdbd0529d9a7ef409bd866981c33799cb480a9cc1cd9c6dabd714a879
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/superset@sha256:85552e658d25d1c3a4c7aeb569d963207e7431121fcac9af807debbf479ff8ea
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/superset@sha256:c6529b93552d23a182859bb473e3328d262c0613fb241ee45045c54da2305c08
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/superset@sha256:05e77266409b85de02f3a88e9a5d29434f88fb67cace59407787724a2d4ef633
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/superset@sha256:0812332991ee4fcff63cbae97cd98524b320a83f2a2996e4f41e67a633656b01
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/superset@sha256:10ce32f4a769cf44f6c2970d02c73d5d704ecdc56e8be580192008469e1799dd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/superset@sha256:7b60e034d7b985a4bdf91f9e746fb35d2074eafbd7f136f85c987e28357cc523
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/superset@sha256:9ecd356597a81b8a536cc5c34e434200ff20b7e59283b47d7ef114189a7a7c6e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/superset@sha256:4a91c6d336c7df9ffb8d3179ca895d317a7f5f7b369e896535d6cb1c4f0cee24