Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.16-debian-dev, 1.16-debian13-dev, 1.16-dev, 1.16.4-debian-dev, 1.16.4-debian13-dev, 1.16.4-dev

Index digest:

sha256:bc98482e2f43d4135a83654384d4675f629e0285a277c97bacec695696fcd068

Manifest digest:

sha256:9b8b6c678194445c5605b13a85d8fca20f8ff0d2567435e1c8b4e677603ee2bd

Size

80.30 MB

Last pushed

4 days ago

Vulnerabilities

0
5
2
9
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.16-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.16-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:54a759a889fcaaa8ce6b8dcdd7b39c67e8609e1d7dda49d6a9baef163be29e95
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:d8fff99af7813e70a3919018b15cedfa920724f403363d0abe98bd45c3aefd6a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:a3bcb1ebc4963c06717f840963de78d1f2acd9ed8e22d3243e1f48d4528c41eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:645cfd12abb3bf36a959cdfe8c3ab34c7e8f05a1b8aa16a1b511f91d9fea7caf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:2212de05d60b2d8afe17fef0d3c2b682355138808ea7459cadb21f5b94d49457
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:573587bab9be41f3b10d190db11a100a1be27bdf0cdaaa7a1b492c24238c982d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:f432dbe16c8dd232b313e2b8f6b22b535b3339b03f5377bb8ff6d81faa85c9fa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:e7e4615722fece38585ad5d6c2c3badb4783a8261e36db31784023a3d5acf57f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:74e4a50fec921c2376f9e91f7126002d036eb7828908654598be09f973a82348
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:6b9e08fb8d69085426481ae10758a69dc630b325ac30d56311e9a9d7b69963e8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:16df49cb80d48d0802ea67f7537766de7ad160c859f967a7ad3ab80b58cd0b04
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:d59e3d8980e5b7b8bfd0aa236fa7ef908f11dfe7dc87443d327f788d5d2dc290
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:51d3cd6084a02d4637949c21436814eadaac02e59cb21d6aaf44c2f521e02595
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:90e9ee4cec300e11fd072ea080cdc2e49e8058127cfb104f83f23eef83c6c036
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:46205ab8ed485e57652d0ea6f6a1ec1fd373499dd5cf409ed703d3740f2be45a