Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.5, 2.5-debian, 2.5-debian13, 2.5.5, 2.5.5-debian, 2.5.5-debian13

Index digest:

sha256:1218b5da9292f284854673123310b20b3a8c43f7157979227da13ca3b38010b1

Manifest digest:

sha256:dda16f74e3b60bcbc31ee7cfaf18b617a1c13c716936d184f2b371033d530e74

Size

73.80 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:6e987f57adae9553a0e2b541d5137a15c1bd564e641fe99c7bd9b43f05b1a232
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:c5ee2bbd9c38eba5f560faf1c47e8c4db934cee33d7ab0ef96f7d42b4b043938
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:134a71b141a601db0a44af1e6e18d7f467a995cab7946c39b53ea818b425adcb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:2dd01d3d097fa9b55fd862181c95366ba4a79f34b6fe7e62ef7e2c9c0c3f0e6b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:d942030944b6922ed9cf9babdf7358cbc52a12efc0de93e86bacfbc47b7820e9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:6827723986bc3af92f8bad3407b4c3912fa02975d2a4729d3489051342344fbc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:0a0683e2244400dfa57f099284caee68fa6537aafca9dc509701a738844619b4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:156d6e3477e26cdaa846e5f5d4e66abaf7110090d830c207978669f4e21f574f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:ba29e08cf5efa459081d8468266a158770780a247bd679c3fad104b09d6bb9af
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:5d40a1b92336b00ffa915513b7e38ec917a184f95aaeab0b98db18833857dfba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:37d55a1a3eb5d889d51fd931a7ba8edea892eae494d1d21438489d895273373e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:f83c1b62facd300d5922f27d6a9f621c6d310a95debfc91349e110cfc094c38a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:3ef5830dffb162bb7e9afa05094303ed5c61d772c2dea1757bc07eec407b7269
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:8277b96d58966330ebc59140bb1b363ba21a124c5c5c2943b34e5d5a2a0c88fe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:c232add6484b44fa8f6c4fb47b5584e38e8c5b493dfee461d941b483cb5c6d45