Sign inSign up
JupyterHub K8s Singleuser Sample

dhi.io/jupyterhub-k8s-singleuser-sample

JupyterHub K8s Singleuser Sample 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.4-debian-dev, 4.4-debian13-dev, 4.4-dev, 4.4.2-debian-dev, 4.4.2-debian13-dev, 4.4.2-dev

Index digest:

sha256:86e4a8be6adde09325a46948077f1f3387f03a1946261fb0457b33b05ecb41af

Manifest digest:

sha256:8cc09e9a430a7327ea0420d092fcf99cd8bf4db8e3961cb21747e1a3f171dc07

Size

115.47 MB

Last pushed

10 hours ago

Vulnerabilities

0
7
12
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-singleuser-sample:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-singleuser-sample:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-singleuser-sample@sha256:1e8bb9adbb20f20245c7e20ea42b435155e90333bea01928b0e6d97c39f59748
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:8559bd9500aafcb431fabf49ac9b58c96c040a387ae0fa81ebd53b43d2510e4d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:c3a39dc04651c224ca9d6c5689514b3f03c10e74e093a2f9719901ab4ca91e98
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:f4c4f438fa80a2c8bdce23fa08c814182ac8fa510ea836ddf406e5de310f08b3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-singleuser-sample@sha256:6e0b84a7478c13f284890c67fb3b294e9fcfec33f0fa8ab62cff0318baf13808
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:4e0ec8b76a976d9d8d3f4b4c308e63952776dd5ea067d1e0f212d77cd5b3dec9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:1121306f1b78e79e1e588d4342d726589dc0b8d069b9b925db6cc99e64cf8234
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:f84bfe2ffb124907e8cb628ae268c0eec7270721a33764d3bf2af772da903cfb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:82904559c0cdc6e9e1d0862fae930959d4fd68d0031a20f2b700820c012bf1fc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:ad2cdc73b15873999433d58f129e9e48e804f7b5b199018a42d28fd7508ce804
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:35c5e4ba7b85520ab64caba1b3d9bbdcd709b0a0c66bb8b2180aa883b94db492
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:65f337ac499f89de6604aa12a590d075b7fdbb122e4e1aa296462fd81757b515
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:4966896b5866c806db89f16605948d0a7ad38994efcf1040580a3f3d13a6cdd8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:5a0faa4cb88ad2e3a8d468fd1b57224e44b7910a61a83a83fbc61c9345ddf8b8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-singleuser-sample@sha256:0000afce59998d225f9ce8d9459a08f4589176e932f0279bcb004cc1e4efbdf9