Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.37.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.37-debian-dev, 1.37-debian13-dev, 1.37-dev, 1.37.1-debian-dev, 1.37.1-debian13-dev, 1.37.1-dev

Index digest:

sha256:34294ac387e24ba63c59f686fc5994feb945544a7ece2cfb7d8af750cb093e6b

Manifest digest:

sha256:a3d72071a632548b158a8ad5fbdbe6b52ff78d5a981aadca05c1df0bb963e535

Size

84.97 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:b5f8cbe447394500a5e3f0f7953cedfa5baa99c9c666ab5b0ef0a9ef9c5061c8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:36563a2e39404504b2124ef9fd307eb18981f016f75b4135a5b2759d50cfa840
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:6b25caea32d173c7a6c2b652642637183a69826064d51a5d90a2936a2104dc07
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:37a16bf160ed80df0ff972d8e0a9e86b8fbc9da18a3f70726a2381b192b692df
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:7c29c8639d5bec945135bf2c0b5217175b3291bf618b5b196fbc6dc0c950928e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:5f286763429a19925ff5aa1015222323b9092747d39e42f90c8999e92f8f3c90
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:c5ee9e0aac51675fd768ff8edc56d8276cf4b906c3709198ecf492d17bf20ba7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:669f6ab3a27b199bd463001a82206e6c12597dd9119e567bd83a760e4fc4c36d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:7f1bb1a139ebc4c697987528faab99b3e9c6eb29deca0ed4e13470712cb38b26
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:b69b98f03a254e6722906df819f3f725a6a7e35926bf9d5875c65c362115a7e7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:8cd9d81936434b185a1a43e700a1a75f0ccc544c9ce3024781f9fdb14ced1e8b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:0bd6ad0216cf5802925a881e8d4a97b8d11508b609f13ecd4efdd7bc406f15fb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:6c0f7e08ea30591e3dbbec7a4da6f6c05f0186d2e364764c817e07561a511902
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:e37544932db935bd36729739f64480825f5cd7b6eaa838c811f541dcca907923
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:3bd83926dc5042131d95bd2f73f2c13cda2b51801456bfa71885f6d81bd50858