Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.16-debian-dev, 1.16-debian13-dev, 1.16-dev, 1.16.4-debian-dev, 1.16.4-debian13-dev, 1.16.4-dev

Index digest:

sha256:e76fa8d171fdefc6ce51324935f4789d6f3492651c92a1c3b7ae5cb0d74038cc

Manifest digest:

sha256:47895fcfc64e99b176ae4a6899ac1cc1195fd726f9658f1dd160d2e7fc4e9398

Size

80.30 MB

Last pushed

1 day ago

Vulnerabilities

0
4
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.16-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.16-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:a2f62ee755dd077217c3a9531f0ff240734dacd3ce8873f9fb0cc004e6e7ce0d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:1eb0f40761de47753c3ee43b72296da491e2b2bef615a46bbd833371b2341d89
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:e031f958173db32ae113c6a375540192bb5e3418b74af3a49a4ac7f7c4ca25b5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:54026d98470f5d6d73e3c2ce7d8f8f153a8ac1a9ce6071bfdb01ec3e3e5f695b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:db8baf1f9e5925ac9a1d393a109de96b3e46463832220ebb3b93014a3766bd1a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:3b81013a634159886cf6080411c14104a43fb08afb6845da4416b8727c3b404a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:32553cdf27d4c405bb72dae7f9d6a55ab7967a9ad984e67d58731db2d4b9bacd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:f1c605bae89c9016ca6eed844f0f411107989dc1697ff1953aef277ff824ba28
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:0bf0acc4d5f77a60f4110806f27696d20b931e4da51bec4dfed4c98c8654db82
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:809b096f332c4bba0f6454062c5ace29b44b266998cf4d2269825559c6e3e627
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:a9a6511b4a842e550036a1f984f4cba3f8d504ad3d73c9fa69cbda3942cb80ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:39d65f6337c5769239fab570e1f4d7551649398d39f73f8a4abe3a811ec252d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:6b466e5c6082143655ea62e08aa94cd9114a28b0b26b2dd8c18e9dd101ece42f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:5c2f6d06f4e9a7ce5f0875f5653f089b975103cd96b90c26d1e988708778bcb1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:af8daefc511ff045282b647f1c390f887e893361a94da9219f541319c5cc3d71