Sign inSign up
Supabase Studio

dhi.io/supabase-studio

Supabase Studio 2026.x

CIS
linux/amd64
debian 13
Tags:

2026, 2026-debian, 2026-debian13, 2026.09, 2026.09-debian, 2026.09-debian13, 2026.09.07, 2026.09.07-debian, 2026.09.07-debian13

Index digest:

sha256:f11860676c68220060235b9612e049e752febd53032564d38a9579ac1511b758

Manifest digest:

sha256:058fcf812cf5750bd18c5b5383fafb98de8c8066574caf8f16d6f13b8228127a

Size

92.96 MB

Last pushed

6 days ago

Vulnerabilities

2
5
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/supabase-studio:2026

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/supabase-studio:2026 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/supabase-studio@sha256:fb8084f158221fc015ce450ac36f3a65ecaa7fe2dec2cbb1c4e22f065ce2730f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/supabase-studio@sha256:67397c596ae194159c3e7b031bcd358a25386104583a65fd46aa7de34e7a016e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/supabase-studio@sha256:67d86a6b6d4906e6aa2fac450f81783a24ed3da0361faee586da6d4e962d3f0b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/supabase-studio@sha256:bd6ab4963878dfc20344a7da0b9e4323c6fa92ef9972a29079e669bd0bc18dab
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/supabase-studio@sha256:aba1ce87c5388d496f02ab545b3b7973a0a02730faf5e326040f6beae5a9b0b6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/supabase-studio@sha256:64e05fd49d35d8145d877b0ee343eb338cab5fe291e5ce0e6b0e61943fc85e07
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/supabase-studio@sha256:b9f63d5a429e24884611730c5218c965205cbda6ca81bd32e20d93f66d0b3a79
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/supabase-studio@sha256:950dae510b4ef7afe37e86f2e35a927c80084d4859368ffdf86186a693cb58fd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/supabase-studio@sha256:a4baa3f2312813e1e742c8a876500839ef7d512be83434c906807a5d5701eb92
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/supabase-studio@sha256:fcf5004ad21a931b0c6ba4a56d580601e8f8b946476660a11f1ac1948d46bcc2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/supabase-studio@sha256:d421adfeab0d16e73af4e4ee9f2e7b6c1ffdc0de5d3302eed8fa2f359a98819f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/supabase-studio@sha256:fe62742be265604472ed276350bb3119da1212da0c860da76117f3b58153a4e5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/supabase-studio@sha256:138f718c2e7640b88858c6c241c0d919b83d201b5effd6669939b2b6cba2e271
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/supabase-studio@sha256:370477a3d8cfdfd115bdf9a31706e92837ee3592c927c6d3f7657eab5a9635e0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/supabase-studio@sha256:65fdad25c65b5e3c58f86215082a811d6fe05fef4021139b913d01bad17f93c2