Sign inSign up
JupyterHub K8s Singleuser Sample

dhi.io/jupyterhub-k8s-singleuser-sample

JupyterHub K8s Singleuser Sample 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.4, 4.4-debian, 4.4-debian13, 4.4.2, 4.4.2-debian, 4.4.2-debian13

Index digest:

sha256:c63b83085e79904c50b6c0965626fdbc5c1215183c419a60f50ed5aaa15a46aa

Manifest digest:

sha256:0dcbb5538313b12ed793cffaa3574bbef96d3c088162b8e90e5f1fd207e8c27c

Size

104.69 MB

Last pushed

1 day ago

Vulnerabilities

0
2
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-singleuser-sample:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-singleuser-sample:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-singleuser-sample@sha256:ad9cedaee704e5b7dabe04f0d2ce535a678c76638b769a27b1f3a053f125e272
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:16ae7cd043664b73d90d8f35fb2c44b0adb97ed43598a166632b1f86ab7aff85
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:c8ccaa1dbc53e8122932fc94162cabb164add5ed2040f7250a928f71e3ecfc8c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:5fa7a5c678b98089e2de597f840354cb812d532cbacbd4be8a58b9b174abe00c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-singleuser-sample@sha256:20ccba4219c44c700c2c71557db1664ce6bc88f2593a5e1272dc4fb59c3811d0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:5cad29e779d3e02100bb253a04215921b2337fe5e9bcf25e81cf880498f99cf9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:6c6c58543bb79c9c2d7487bc74fe531d0cb258347da371645e583b21fb7a856a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:ed56562a99e98e60cd949202c288eae930e874dbaf626f2620b462b6500ec3ff
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:919a1f30c7dcfb85c27559495a400b9cb13bcf3ffa7533eda3679f9c0ce06520
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:85c8fadd97d663f182e2bddb73097b12b387c4f55ddf552831cdd6c80f15a36a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:47a9dade0d1a812b5fe037932b4c42b40d3e39674b6bbe5c9477a43bf7df65e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:e91d89ff2c01c5b490d0a4e367663309a1f9a9a56d13ac6b49586907d566ec6c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:836a52220b2c7ccbcdc74615d56cbdad614b7648a32543874376d4ef0280a4f7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:b61e6f533aa3aaa86a5cf8fc328228c399aee0957ab6f99729cd352b726d7387
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-singleuser-sample@sha256:37f989c7cafb8d4cda5ae34c901bda2e4433e1b435bd92486e42dd7761d43cf8