Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.5-debian-dev, 2.5-debian13-dev, 2.5-dev, 2.5.5-debian-dev, 2.5.5-debian13-dev, 2.5.5-dev

Index digest:

sha256:cea95aa9f6dabb58b66a8914ce315848ebada1fa0cf15922e49bf0dfb1177cec

Manifest digest:

sha256:d442f73d25672558518b83b2f81c10c4955470210f26baf594c8c40565c4711d

Size

87.91 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:f29cc47aa969ebdf1b777aa10ffc4e2bc3c5f2334ccec54fcf7c27a701e01d4b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:da4163c27c091ecd4cbcc8ec7a4cbd4fe494fa41642fb0cf2e5d8817657795ef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:b99937be674bcbc99bd60ee6b353dddfa5e35c24fc395622116272814df4f926
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:ecf9487f11869fd93d8460edf074688f0ea243697b7f86897d0c2e454d2f4f51
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:d8e57d2b43d2c890ee3d537e4082ef1aad06243bbf4f1489222ef6b77495e3bc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:23bb40ab07aa1ddd624b694e452e57264b970613e97e43756ce8e076e481fcde
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:92c3f5fb9c7ffc10d6a5e52fbe58514b6a64ebe1cdd930ad50481c945878472e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:42c3c208851360ee9f627e1dfb88c638c40b1ac5dd5bea73b646e039f77ee852
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:7d2080d935037721dc80ef3b5db01e86108bfa935922c2586932e63f733ba645
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:0895acb7e687508db79445321996c4f5d140d210fe47e10bcbcf2100ed3ad0d3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:c430151e7d11ed36c8d59b18244d3f2236df3ab9df25214c6d47e7e6b62d010a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:c052a055f0e5668d7782e0a530671226d7d4e9e0a69b3bf953a2f328b8cf8440
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:ad24d41cb336d5e186aa6a75cc491f61a0493867918da25b37bbde8a9a1aabfc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:a25c0eff8e3010a92634848af3545e747153afb391b3be1c87b49d8204c5d439
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:317021a244fe45b60d4952b5d8953c71a267d1fc6097becbc8a57f330239ab7f