Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.5, 2.5-debian, 2.5-debian13, 2.5.5, 2.5.5-debian, 2.5.5-debian13

Index digest:

sha256:e09a8542a849a5db96180e3879656b51836a08d17e36cbeb42be6435579f21b3

Manifest digest:

sha256:4bad132e30c69e86455e7b682e19d8066809e73dfd14e3ed222fe3002fffd080

Size

73.80 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:3c00c194e1db8ddf6a25197573ac74220fc24f5007b91d8798f4ed7047e6b787
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:1ca5233dfe27f51b715597e4c414ff9d1c7cc545d0160b5702ca430a68ae0294
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:4a98e6b44e8d3b79f036eee849df5ae9abcfc0c7e96a79e6273eff7a09af0bac
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:d98385afb976555d1f75d3d9da56647842628f3c39661c9deb688e7931bfe618
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:5857781a62fd90c985dd268d7775c080b079f73400324d1179e036cc1c097ed5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:d2e67ce11ee4b9270d82fae37556a85cc1ff18de940ed435287729d69b736349
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:570624e5e79263a19af49ddc7197d354c5b9d2c4be79c68b85c7d35f85b01cc7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:63ed1a2c3a5f68f3f0fa2e0af170d91fe81a25126e3fd18b859477e68c0ec365
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:d378ea8d86a5069571c615133eb5f60b94d091e04b9f6b8b3b0eef7eaac35225
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:3e2a1540b433bda482682b87f6a11bb0dcff328c6c9a8619ef2a513fbc4fb59b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:be2ca5958bd749d29235b2ffe1e9218442c92cbdb7a37cab47ad5f29cd46ff0f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:3f4e59644a09cd2dabf42af047ccca5d11d0d8809958bb2d4d9f53cae744b129
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:de6b989a7f114bd78ebfd1361336892797d1a29974723b2d633fc2f5a9938e4f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:bbfdfd1d3ad8dedf8e22d67790cf9baa9018df5e86a88bc543a8be0f5a1e9eb9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:47b7337ca7a98403cf064900bc7ed5bad94e7c4803b757bd1bbd954cff02ccf5