Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.23, 1.23-debian, 1.23-debian13, 1.23.17, 1.23.17-debian, 1.23.17-debian13

Index digest:

sha256:e0b832de483ebea24bd97310b879304fc817504fb82102a5f487f3e5d4cfa23d

Manifest digest:

sha256:f20b52d916d28b0876c90cd3abfa4a0819215ba58d55d3378a8897559337a58c

Size

70.14 MB

Last pushed

22 hours ago

Vulnerabilities

0
1
4
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:582420f15f927ff0289ed47c20e2ea750dbe3c33573e3c10793f6656a461fd14
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:4ab7a356511542fad06fd4526114af4280f622f9e5d73d177c893f7a3c1ef140
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:9f45aa419cfeee1825ca17778bfa5398b221790906c160da50f7d6fa5e7205b6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:fc6bae177b4de1ede63f366145606270a995ee07165025d0efaa445ae10a515d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:84a677dbf4264a70eebcea81713fc271804b36eb0ee51cc66a231d29aa7d88f4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:f5354332c794cd8f9a4a8bf8906b58cd6bd0dc92084f917b318a98d780c49e16
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:2ce07d10566cf542a290e421676771f16cba3079cbb47436c46e4b3f42e88bd1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:74bd880865843cb7b5674fa1b5cfb6180e0eb975bc1784881745d8b84c3adfe3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:dace25095c83c2c1c6b79f7b3a5b844508178dea67eb58915b8aa5267e2f5245
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:d6dd5455aefaab9c8f630e03bbca78f3378459464e9819e2e7f47daba3392534
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:1f55916ff2978635e5d1c48482b84ec5a68c09392648a590076bef0ddb61c67e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:477ee01370bc0746352764a3e127ce3168536b26ed2a74888ba2aa34bf8f7729
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:b8830d9b573bfbfcfc8755dec8e4c3cb723e9507cfb16277002dbd479d0bc59f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:b55185ab4fb88dd5781d58ebab784dae3e0872f8d72a6f5bea16a8cf1d0c768c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:f89eada999cc89df0b693539bf3739d5a471ebfbcbee5f888aa9e341f8c0a392