dhi.io/supabase-studio
2026-debian-fips, 2026-debian13-fips, 2026-fips, 2026.09-debian-fips, 2026.09-debian13-fips, 2026.09-fips, 2026.09.07-debian-fips, 2026.09.07-debian13-fips, 2026.09.07-fips
sha256:b1cb2360c3039b4c2d3b05216412244bb53b4f0efe928ad708a44946d2301376
Manifest digest:sha256:b051f56150637cf90fcb6df7aa25755f9bcf6b62623c6b0a632d76f480a34a9e
Size
93.71 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/supabase-studio:2026-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/supabase-studio:2026-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/supabase-studio@sha256:3be4341086343e8fa61af55f827433051bec562725298fb9505a4d4ae3dd10ed |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/supabase-studio@sha256:f999e464739e86f4d032ce6f19f629b01b68d1248a6d494a589010074ceeb6ad |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/supabase-studio@sha256:c4a608655a1b9e9c96817f9621306a00df221dcf7fbd2e3d731dbbae3255aa75 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/supabase-studio@sha256:2098ad055e10c4248f6d1547e61b124a2a1ea27b0f16a88b20c105b313970a57 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/supabase-studio@sha256:7e492ecd5a430e9aae65c4e75804cfca1a35d930ee122139ee196a38d790398e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/supabase-studio@sha256:1d50b5005086b631ffefbf84f6247d16b26871d952d3fbc2c250ac8bea427612 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/supabase-studio@sha256:c4ee733eea00b8a2a139d6e84541be19fdf03466606bac0c821a43d039d0921a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/supabase-studio@sha256:54da688331913e8d0b3017e0510bc349d44de09ebc38573cd8ff48d4493e3b4c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/supabase-studio@sha256:c273ec399560a8a81cd68b13f7ce00251689f004e3b78aa48329e72ec39a5b07 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/supabase-studio@sha256:9b9fc8178fc3f8b99336c96c2b444c8430872089d9102308d2d149ca5884123b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/supabase-studio@sha256:e6f1b8f3a3733b420c0a0adfade9424355ec3bd96bad29321f92978006c83241 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/supabase-studio@sha256:58f1150ce3b08e4f021832d80f73998fad7da634a6560d5bd84782db8a63e1ae |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/supabase-studio@sha256:a446d43fcba5a306eaf5dc24c1a05f67f96e963f55a9c9f6bbfcb94983eac1a2 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/supabase-studio@sha256:393fb63ce72ad9e294168d34ae7cd5b3a08d2a39fdad39015f813146a95f2c1e |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/supabase-studio@sha256:4f2e1ffcf862c0547a68430e560fbe9d42aa7cda7dbdaf756f228bd98f739adf |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/supabase-studio@sha256:f8c834df42c044c539c56295aee26e29a87cbb848209222e07391e3350b6deec |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/supabase-studio@sha256:c87337a93603569a7cdaf6df9cf27ed42d433232dbab0f69c0bc10592c4f2657 |