Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.23, 1.23-debian, 1.23-debian13, 1.23.17, 1.23.17-debian, 1.23.17-debian13

Index digest:

sha256:3f59e26e0bd7ab306e18e44dc6270ef7c6fc7db618ed724e47a8b1edc09a265f

Manifest digest:

sha256:704ab27e0cd4e686f916510b01ad06eacb1cce494ae2b5296cac916eda797f65

Size

70.26 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:9f58b72168a5df30f71f45b953dc2b46f3590f36f142fd2820a0ca5a2a35a480
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:75bb399eb6ab92c1abae821b1c8564f67512fe5de2e4e633133e8002cdf4667c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:ef5300e76ba36a972efa5710ce95a360b8a45da4573941dcc5061f073c7fe717
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:cf2cb8130f1379592ec8159ff46e440b999c2070241071f6adf0a891c330beb4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:065287cc4fe730d5d3668b8ff1efdd5d2ee6dc1d3f1a6aee48a4e449822283d4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:ec61df006364399c720feab26c0af95ea5f4e46ceb7dc5939b2b8cb191339e72
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:1336cb513f62c086647a82330ab307168239fd0e2db6fd3bd0a05af44edb81cc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:919abfb00572a6548c1e2574002e23013e17d6bf4cc7282a697f8d54eda62dfe
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:b1b39d0ec780eee94463767170ad5514872ab1ca735abe116f10ed832fcf1ff3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:88688e15946f2046ac3bedb7467a530b2aafe39c1889f2ca7ba042fc8cf534a5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:2c653bddf56d9a05eec9608cd76ec2f031e910c0bc03eb3d28b8a4164354eb74
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:2d7e2d7d625c7bad4c24bb1051b707ba5200d7f4b66cc032dd144e16422891ae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:33bcf25cfa0f25dc5c9c3bfcf514c169b3a037a320e914ecbd846552bcf93a81
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:f00f5937682f77aa61cd9fd7692330481eeb920b98b5c6017366e55a94fee176
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:a644aaca542e3fcede1663983bb0c29162adbc90b1b6699b7f4c9149a6b97a95