Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.17-debian-dev, 1.23.17-debian13-dev, 1.23.17-dev

Index digest:

sha256:5749e98fc76ec18893496adef97324e937ae3d24e6e5918aff80a534825de220

Manifest digest:

sha256:7dd3cd42ade95eb5163bccd1df957774cedc71d2224daeeeaca9c4ab8a6c87e6

Size

84.52 MB

Last pushed

1 day ago

Vulnerabilities

0
1
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:c1725b3b1f0a2a330c994e7a285d4cd5b535981b5d4bdb417e75e47307b86fb8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:34d9c5e6519c8c2b96c6842453160364d83b1a0c4ad7392cec316c1ec7a263d1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:adc94a320f3d8de256314c43e3a88080f98b7d58dee3f0f1f827a247124ee394
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:650e81f0bf2f466b98104b71f9af689ade007a6504645c67d6279e9781714b62
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:8dc02faf34040ccbd2dca2cae3fdbd6ae2741201f165cd40675e6717dcd7a3de
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:d497c6f394de056e757800c3d0aefe851dcafa593ae8729d6620360322d69923
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:173ebd67e3bfdae006f61baf5afc94e8fa41a1063e657082593c4f2b9ded87b3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:a3c99ca6588399b5585b3807e144764603a1e683fcc458cb26674f90bd0e6f10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:11c106a29da208e28120013a48e1479dcecb51a7f6422966e1663cba215659e8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:067644d3d6eb6b939051ba5f5757ebf5aebfb2c02d53446e845cd9cffe6c2e90
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:6bfb7506bed92b1c77b45ad0e6c151a02cd1880388b4c4f963e47cf8edb5abfe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:91fa830d53562c7ebb0ae03f43562658ad5577a409f512d3c11618ed3d4097af
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:4e9d52087c32fc4da54d44c4964b197feb14b4b4dc9a16ad8b1bdad78f616d21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:8457400be67501bebfe3ff1606b9b4a0abd334448a937357e388d7bbbebd961e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:090339ffd428c21f475b9389424fc0545fb7b73d4d45e4cf5f6cba014746e368