Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.23, 1.23-debian, 1.23-debian13, 1.23.17, 1.23.17-debian, 1.23.17-debian13

Index digest:

sha256:b5e6672478067ca8a827ce93a2f5514571abc8af00a7735e5da848a7da9ddd61

Manifest digest:

sha256:9be475481a49ea01516e62bc2f0c4aeb5d45e8c37bcabba80ff98383c3e87419

Size

70.13 MB

Last pushed

2 hours ago

Vulnerabilities

0
2
4
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:7b6bb40d295d6eee42b0fb3784592ff292c4035ca95db9fcddae0e28d969efe0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:3a934b957f7cbbca83b6f5e3588ae993e3ffa3e4d18801185b271430f199c2b6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:446de2128f529cfe11d5c01f78ab57af10207824b85a95a9e4c72e8f0480ec2e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:70eac1d2970a95d68f5c9b1052d2c4a167774d32a499e668c32643d7deb60615
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:52f53297966ba7a35955ceb79fed9b9ba1a664a86122c5732f559e6a7cf9fd8d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:0e00c2d683c1db00961c4481df6675f9223eaccdd7edb7c0783fa09f63c3b530
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:71d8ca6b95249239fc049ee9db1b57706bb827a754062101bf9df2d5291d0ba2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:ef7689e987984775d46b7189641bc918a08c496b0edf1d7dad0fc6e48cf2e876
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:8580b055ad17bdf1f3054641acbea8ad8cd62e377f53f8c6016488f152b66e76
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:5c2531e4fd77edbba9871d8a149fe36a457724584d5f8d20b8c92afebc3d4ba0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:b9a539eb445a8558b0b549c99352ea347487527ca0cd31a2743beff67c261238
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:51d367a8594613da709861fb699e5a5ca7518ae8dba3249a31bbf7ec04593162
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:e23eb8da034c87017ec6b5aca45f677327541e5bceeefd158b7dbb8472b03c81
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:526c6a8de50865d1ee48dd2e9659a7261395df18726c7d4736b98f8d161a01ef
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:5e31ac9ead0c8ba29bc6bf73505a461f2d9cb97570ec1c846016708d0e8f2a86