Sign inSign up
Kustomize Controller

dhi.io/fluxcd-kustomize-controller

fluxcd kustomize controller 1.7.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.7-debian-dev, 1.7-debian13-dev, 1.7-dev, 1.7.3-debian-dev, 1.7.3-debian13-dev, 1.7.3-dev

Index digest:

sha256:06a5d5e27ebd37987b89ac7e491c9399e8c6ab13d6bbaea12393cc58ab7f581f

Manifest digest:

sha256:f2ab6df55b5d0a25950be879e1c7ef77834821401364ea0b66daeada4daf57a8

Size

68.54 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluxcd-kustomize-controller:1.7-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluxcd-kustomize-controller:1.7-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluxcd-kustomize-controller@sha256:b25377eb472b98a8f9a19de4422405bcd5c0cd9a4511f550a5e87ea7e5de04b7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluxcd-kustomize-controller@sha256:03c26d687d228d63daaa3d2ffebc743ecb3e7de382aeacab9f1d8304879887cd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluxcd-kustomize-controller@sha256:8f9f9237716bd1416af9ae88b4d4e2bf5c9e51a8f3b1a741d5cdf73e5806c208
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluxcd-kustomize-controller@sha256:6e05bbbb96124426c99d712c503cecb3c14d5c6bb22069f92d477a744d8652df
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluxcd-kustomize-controller@sha256:6c815934e97c76bab6707a3df5d8e4090ebd05c6fa02746821122ea7daf666db
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluxcd-kustomize-controller@sha256:959986bbf0a35769b27c5e712f423bac6b9abace01b0fb57ab5073a9d93f8344
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluxcd-kustomize-controller@sha256:f1c74d6d4510f07dfc1f3417ac019bd86291defbbb4f0c6e6943e92c114d77d8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluxcd-kustomize-controller@sha256:5ab2c9b8c95cadf87e668ec5abc1a097a1d606e262fd66c32845f285096f8f1b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluxcd-kustomize-controller@sha256:065fc4b0ea887270d9afd008a9f54afdde6f363b0231cd3435c957b6afd838cd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluxcd-kustomize-controller@sha256:b82c2ac80680b0003493a5adb01e166e650cf625320705901e16db82ec8f0d0c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluxcd-kustomize-controller@sha256:12d59d77349e59215123d05d47b2f4d5b2a9a4266790483b62ac8c90f2b609d0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluxcd-kustomize-controller@sha256:5db0c20e2207def555c4192f9b00c3a42ed284489152e17062fca8c99e04157d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluxcd-kustomize-controller@sha256:454d229c1bdeca3a1563f41f5084f99bccac78926004b085bd4876e5f53f1ebd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fluxcd-kustomize-controller@sha256:185e8a757f92170906348b53af58edbeb54efc2426421f92a1e3191ea2da7847
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluxcd-kustomize-controller@sha256:66ab2e655a4ffd4b19880e83f0cbf064e0a93011c416750f40fb074631479eb0