Sign inSign up
Apache Superset

dhi.io/superset

Apache Superset 6.x (dev)

CIS
linux/amd64
debian 13
Tags:

6-debian-dev, 6-debian13-dev, 6-dev, 6.1-debian-dev, 6.1-debian13-dev, 6.1-dev, 6.1.0-debian-dev, 6.1.0-debian13-dev, 6.1.0-dev

Index digest:

sha256:cbcd362842c1191be8480906f54b25fde1bd356ae7243c3bee5eb05ca5d442b6

Manifest digest:

sha256:68f1f1a38ba76e9e29c6bea3ecaa8033d99b5eb7fe05ffad9f8afc2dc8b38228

Size

310.28 MB

Last pushed

1 day ago

Vulnerabilities

0
2
6
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/superset:6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/superset:6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/superset@sha256:3e44b900f7103e93a7b956023fc63d59e7446c82521ec008e35949850fc8ac18
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/superset@sha256:a9915ae57879b13af6d650d16366bf2ec6699b438c4ec67efdf3e2a6ff537bd5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/superset@sha256:dab2cc87fe82836c73e05e21057cc5f095f56c02ad9788661abaf8d92eb371d0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/superset@sha256:c1abd3ad6732087f973b49ca75531604071d757bf669d7087851f890d3e49d4f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/superset@sha256:8b0f2d4b0e8719288c1475aa4e27bf336737369ec23cc0343a6a85b7109275d0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/superset@sha256:66c12c97446cf9552754f6bf3726ef87e15ef1e93e2a90e7dfd5ec67ac986867
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/superset@sha256:df1ed2cf6b156d57b57b494b03a54522bb99999dd13255a3b25dc7f6a4333540
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/superset@sha256:6fbc2df2c9de069ec4885de11abf16d14beafb93b0f728130c5ab063e74e3dac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/superset@sha256:247f3056c8edf9afb8604a4a973210f0446afcaeae7ed1173a32d08e4fe7b80b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/superset@sha256:8649a1ef4ef5a9bea75cdbc909cc5c7d17b1a8390db43f6e54551c6f8b3603de
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/superset@sha256:f23e2837f87ff1cff140c79a3c6294b5d0d770459f02c45a4829b9efeb117ca7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/superset@sha256:52249e6fe298b0d9eeb1574d253a243338cda5b2b9267c32e9d1176ec10e83a6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/superset@sha256:68a44c0780d48ed94f335ec1d456e953f9c65094a4d7b22e83108af62521be3d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/superset@sha256:7bc8f194f70fb310be5ce49ac1ba757ace573d0b4d75842d37626ff48da73b47
SPDX SBOMhttps://spdx.dev/Documentdhi.io/superset@sha256:90d888fda92c422cc29fb3ce00b3ff8c3ccae4abc7fcf1b51f4e9f66c710f090