dhi.io/kyverno-cli
1.16-debian-dev, 1.16-debian13-dev, 1.16-dev, 1.16.4-debian-dev, 1.16.4-debian13-dev, 1.16.4-dev
sha256:bc98482e2f43d4135a83654384d4675f629e0285a277c97bacec695696fcd068
Manifest digest:sha256:9b8b6c678194445c5605b13a85d8fca20f8ff0d2567435e1c8b4e677603ee2bd
Size
80.30 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kyverno-cli:1.16-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kyverno-cli:1.16-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kyverno-cli@sha256:54a759a889fcaaa8ce6b8dcdd7b39c67e8609e1d7dda49d6a9baef163be29e95 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kyverno-cli@sha256:d8fff99af7813e70a3919018b15cedfa920724f403363d0abe98bd45c3aefd6a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kyverno-cli@sha256:a3bcb1ebc4963c06717f840963de78d1f2acd9ed8e22d3243e1f48d4528c41eb |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kyverno-cli@sha256:645cfd12abb3bf36a959cdfe8c3ab34c7e8f05a1b8aa16a1b511f91d9fea7caf |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kyverno-cli@sha256:2212de05d60b2d8afe17fef0d3c2b682355138808ea7459cadb21f5b94d49457 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kyverno-cli@sha256:573587bab9be41f3b10d190db11a100a1be27bdf0cdaaa7a1b492c24238c982d |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kyverno-cli@sha256:f432dbe16c8dd232b313e2b8f6b22b535b3339b03f5377bb8ff6d81faa85c9fa |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kyverno-cli@sha256:e7e4615722fece38585ad5d6c2c3badb4783a8261e36db31784023a3d5acf57f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kyverno-cli@sha256:74e4a50fec921c2376f9e91f7126002d036eb7828908654598be09f973a82348 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kyverno-cli@sha256:6b9e08fb8d69085426481ae10758a69dc630b325ac30d56311e9a9d7b69963e8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kyverno-cli@sha256:16df49cb80d48d0802ea67f7537766de7ad160c859f967a7ad3ab80b58cd0b04 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kyverno-cli@sha256:d59e3d8980e5b7b8bfd0aa236fa7ef908f11dfe7dc87443d327f788d5d2dc290 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kyverno-cli@sha256:51d3cd6084a02d4637949c21436814eadaac02e59cb21d6aaf44c2f521e02595 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kyverno-cli@sha256:90e9ee4cec300e11fd072ea080cdc2e49e8058127cfb104f83f23eef83c6c036 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kyverno-cli@sha256:46205ab8ed485e57652d0ea6f6a1ec1fd373499dd5cf409ed703d3740f2be45a |