Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.17-debian-dev, 1.23.17-debian13-dev, 1.23.17-dev

Index digest:

sha256:adb6f4b9ae9a413b61610f4ff5e1a46f3c958b2ccef83fc97a23c590a55194f0

Manifest digest:

sha256:690754074482c140d5eb7052647c45ad85eb2cddbd1e23c198c519164e3e3954

Size

84.37 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
2
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:00cbb9ff87de03ccb470a1e15dde991f7c4f18a7686e6e287d3f9af0777c7f68
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:3549198f9f8fe8692ec84c4a8c5faddf7569a75c3c44684878782a94cebf67a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:5942d8b91d23587529e0d99a74c7a5aeadcce90115ee577ac0d173af18bd3ef9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:c528350c7b339b7d856e80a572ea0c3d685702ed99f44dd55355d06ff4365772
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:4947bfcdf4ff919b3e7eb96bd4a69d38d6451d43481b4754b4f9384daa56624e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:62cad17fa685b5db458514af004e7506283257846911a4e1735dd1ec142e10d3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:6066c5a44d0cadcf53f14ed0d1cde502b9a08f8f3a0428e6120837de63e252ab
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:f04f73277a671f270335a5d363aba844c71c36f0247dc1d2ea6f2fe62ea39b0e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:4f2f1208b88a3df2292117d8c75fb8119824d5cdc4104660de5d7d2d921cab98
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:6f15c9dbe918090e90846a2637ff82acad61fc927b5e72bcf7cff3c725651203
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:2eccedf22cf3b035fccb0940acd672cf7862996ac3838f2831ee5493e68b7809
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:b91ca9c2797299a25fdb77a89cc1b07807127215c140abf478e43e991af5418e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:3f80671ebadf0367f3290620c30a1dbc5b1fa5fa7826d9dccd0d42e5e2912633
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:6018e4be28f8e0953674ee5c34fc1f39e4f1c2ac385ac5d84c04fca65f2d6170
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:38610d3c55d283b2cd332ddb6e739992953969cb9fec0482007a8555e50d3acd