Sign inSign up
JupyterHub K8s Image Awaiter

dhi.io/jupyterhub-k8s-image-awaiter

JupyterHub K8s Image Awaiter 4.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

4-alpine-dev, 4-alpine3.24-dev, 4.4-alpine-dev, 4.4-alpine3.24-dev, 4.4.2-alpine-dev, 4.4.2-alpine3.24-dev

Index digest:

sha256:451e2e8b9197d09fa36027b22b72a3c926646d6171d6412d3552e7d2b47c3060

Manifest digest:

sha256:14b58327ab1d541bff8ac1c789136d1a9357704dc08918896dc0151b6e72b8c4

Size

8.32 MB

Last pushed

15 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-image-awaiter:4-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-image-awaiter:4-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-image-awaiter@sha256:8dee4c8b1c83ee321972806cf0a7623358f09b1773842ab0bb0a801582df365c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:d4897e8df98831b493a0e0a49e052822e03dfbaa63d548aaa451e05eb34b150e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:99e18cda5c190343c10f8f8b803269da073cd8426b17909c00e5fbb6b6ae55dd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-image-awaiter@sha256:a3fcb661692aac0e659d15c8c813295ed4a209ac9005d4fa7f0b27a4a7b7be11
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:491c568b89a6f077dcc2adcc7a2d043686e87d20163f9075391a55020359020a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:f61d8188cd70f890a1407c5406b5be4e1284be5def7d7adaaaad72b7e9feb271
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:2def9386e04f70043bbbf49072cef186664acd7ed284e3188730b31297a67aac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:67e22df0fce9c4338b0c21e92d17d6ca13aec207573da869b82959c4d8da21d4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:44ef573f920e8f66b8667bd411850b32c2ca200bb7ede9b783dedf22e5ea1839
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:1b87102e2a3d9a550b405e7cf1a5df4cf957a48cdc51f6e3fd26d97d376f40c7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-image-awaiter@sha256:73145f027cc46e6b2071aa202ea25cc8219ec01114f83f206b3cc7d1c1ae9d76
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-image-awaiter@sha256:bc2fdabcf4a447c08302180c6ca1d18769e8d66364ef4225dfb01350184f61c8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-image-awaiter@sha256:583302ece00059c72d70b55a60e574427041f33b28d593232becc1497aa57fee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-image-awaiter@sha256:f49a47a6ac61bcf7e40d60408f2c8704cf60e69e9195f2ee6aca87e9621607f3