Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.5, 2.5-debian, 2.5-debian13, 2.5.3, 2.5.3-debian, 2.5.3-debian13

Index digest:

sha256:c7cc182831299c0b6c52b44970c7cf1366813a35675495d6c03da3463fae7d5e

Manifest digest:

sha256:5b8a14129e58d22ef8d8ede5be462791056bbef83599345d1c4f2ae1160e943d

Size

73.10 MB

Last pushed

16 hours ago

Vulnerabilities

0
2
4
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:4fa16a18bb822feaeca96ac900bd8b71823779c978f4c1740e168c3306c6f229
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:01289c550786f3e62ac40c95a90e595931d8640a2f908101ab1931899b53993c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:5569ff1afd7e6714475f3fd9bad2c003a9cdd5eefa2ce4cc3b38e93638d444d2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:35464747ea08ac6a423738b68e33c10129b2246f992f97cf7e4cf628e956e134
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:fa6d3821ad2522856c8d8faa6e3c5a2561bc71f32e7c474fa7c9558e362d23fc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:94f8805dad8982e5145ed33cbb9cd580f773d8dca810187a42605e91c69f09cb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:ac6213ffa5b41579cc8c655f7638231d9c15799557a6e168980b9db7f555ddcf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:cd5482e941016f6bc44cbfd8115d891417e374b6a94bd39cdc0b990158d2124e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:ea27f25f5bbeb1101d2f232b9c5a75f70c6672bc5d93798ad57a4dd9813dc3ef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:205215b6cbf688de2eaf7b16eeda4dbc5228f5e7997ad2c8c22530ab3c265a60
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:289dee9e3ebc6243e5cc2bda0bd0706445de892f022b043555387092cac3471a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:cb9d941965980b637cc66ceba5b86d9172b8fc4bac14e3d332f92e506e96d56f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:3f833b40e67f85c02d9eec73c2326add0c82f12f2e46191eb606a58f93ed416c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:4b30b9a413681d9110e43516718ac4115494795455b9f3eed034e88788378b43
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:60280fcf0853940f4d3bbd1480ddf541d72408061f7a76f3bdff19365e22b077