Sign inSign up
Supabase Studio

dhi.io/supabase-studio

Supabase Studio 2026.x (dev)

CIS
linux/amd64
debian 13
Tags:

2026-debian-dev, 2026-debian13-dev, 2026-dev, 2026.09-debian-dev, 2026.09-debian13-dev, 2026.09-dev, 2026.09.07-debian-dev, 2026.09.07-debian13-dev, 2026.09.07-dev

Index digest:

sha256:1f5ab41cdde04a760ac2a5f906cec78135e37b6163bb0cd269e4389dc47bd5ae

Manifest digest:

sha256:73b73b747b4d7a712bc8e10dea273b2b4cc6fd8b869a4388ff78ec55886b652d

Size

107.05 MB

Last pushed

4 days ago

Vulnerabilities

2
6
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/supabase-studio:2026-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/supabase-studio:2026-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/supabase-studio@sha256:b2205c11c574c15324b079799c9eeabed4d0a72affd8b73fdf446a8d3bec444a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/supabase-studio@sha256:bf30d789b7df5c41c5b7c3c9f32b3093127bd29163a7a0c58ce5a348d7070ade
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/supabase-studio@sha256:0460698e7ee7bbfcd3c4465a8ca40883eaa3b0d35eb3b6343cac3b8edf801c7a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/supabase-studio@sha256:d6cedb0e023a45cf984a4e3e17e813ef8435f10df7afc596dfd817c597eda9fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/supabase-studio@sha256:6b76fa402ecb4dea9dfab8b11eef68cc6ae75a5d7db9dc661f504f8f45e19327
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/supabase-studio@sha256:868653cc294c15cf91da7dd379ea5dbb92bc3724ded7f1d53da9f97307abc660
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/supabase-studio@sha256:3c8581b87245e19f310c5f1d456d228136512750086da87fe379af7e2ed70982
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/supabase-studio@sha256:a20172f2e969bbaa3b96a0f44fd323f61e2963ba7a20c17d443b0a30ca0e1290
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/supabase-studio@sha256:c0dbb990c097bf9f15758f0d8efdccc1cca54307bd2d5fd5c6d37ba95f02033e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/supabase-studio@sha256:06acfe48916e703e11d8267ffaf1f844dac4d8146b6bce5f89b10a48425b4066
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/supabase-studio@sha256:9e9820cbfc56d3a8246d6f15dc1783733a6f8142b2bc50eb9a0d8e1114076e98
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/supabase-studio@sha256:d4537d88129e4a2e42a344d5085868739544f0d19e99efdc0d209c7cb278e1a5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/supabase-studio@sha256:79d9f9e010e3ff16d413169be2bf2b2cbec6f3b3ef03f3409b8a6c36ba93a773
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/supabase-studio@sha256:07e54b92eca7596d9aaba6ae257d54a463b2d8da182919f6eb8038937d877736
SPDX SBOMhttps://spdx.dev/Documentdhi.io/supabase-studio@sha256:d30e7be46945cde1ee8b702dbb21043e5080fe9326bc3465ba161dc197e642d1