Sign inSign up
OpenCost UI

dhi.io/opencost-ui

OpenCost UI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.121-debian-dev, 1.121-debian13-dev, 1.121-dev, 1.121.3-debian-dev, 1.121.3-debian13-dev, 1.121.3-dev

Index digest:

sha256:ff43a486f1960b0ae2d6fdd2559478b27c359a46284ba9976145bcd05903233b

Manifest digest:

sha256:708420741a7ec8c931116cddfca12a3e2f0586162fb01c2c0f1275d1383b71ec

Size

28.34 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opencost-ui:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opencost-ui:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opencost-ui@sha256:04be4c3b1b1e878672164c4d0944be9762e14578f3b1d58badf7c4dbb3e30334
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opencost-ui@sha256:99f3dd59870afb56b0af4eb3d0d73e56e686e7270134602517ff7d6dfd1acf64
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opencost-ui@sha256:4e4b9e3e4c04438ac0afd32c1118194cc2473346df59b147e43def0d857c89b9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opencost-ui@sha256:7b3a212d3334938a12fa27750ad8c29b43debe56cd58dabdb0bbdbbc0b3e2c6c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opencost-ui@sha256:e147ed691cea99d7bd9c73c8ea628f60fdd4f8fff7013ac00a0f6f567c6a6eab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opencost-ui@sha256:791cdc0a265f4cac93d470f2e65175d671a7b277ed895fc72cda7e5a33b0667e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opencost-ui@sha256:8b9500841fc1daec4bae6fdc960440bdd571603e61b923800fe83764b3205f68
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opencost-ui@sha256:1bafa5541f5d91a0c6aaa039fc33e625f9c06d766f808caabbd1f651ab323ece
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opencost-ui@sha256:23c8601433d8727f49ebf0cda0c4cb46c691553165b6bbe32a83dba2cafa9564
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opencost-ui@sha256:b733d9f2bad4dba053f9d99f691c0251f602df8265a255c14e997b87a6025242
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opencost-ui@sha256:634d70e741d8e4e3e8fbdac17f15c39478411d283a6b9d6622f291f203dbece6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opencost-ui@sha256:953100187b77cde6747b644e08a14efa0ddedb39340e21828e6479063d4cd074
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opencost-ui@sha256:d468cbc6a5ba21b91a535808afa75f1b35f8d2a344ed767a01c992ce56c6606b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opencost-ui@sha256:ce0baf85e289867cab33d6c80001dc149d8e71cc42ebc9f7b0ca74919793116c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opencost-ui@sha256:ed81f56cc5d51fa907fc9a580c0a658eb066d4e90daef5149b472a1da3b367d4