Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.16-debian-fips-dev, 1.16-debian13-fips-dev, 1.16-fips-dev, 1.16.4-debian-fips-dev, 1.16.4-debian13-fips-dev, 1.16.4-fips-dev

Index digest:

sha256:b453a441644f982f87d63a88db4e969c3ed70a471cf88d0836fbb623bffa847b

Manifest digest:

sha256:29023fdb5aa7adb96e3a91db3a37e0ec22d886bf011cccda2a04ab4b11da372d

Size

81.07 MB

Last pushed

14 hours ago

Vulnerabilities

0
4
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.16-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.16-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:4f0a7cecca14eab768d0bba0b329d27614b02820e253751b523886d054d7c0de
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:a52b4b94ffadb60c938b9a08813bf0504e7ddc17742f9a00ab420bd9d944dc4d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno-cli@sha256:d6de70a6346207904d13a281faa99c4d902b59ed3aa6c78857f0ac6bc1b53e76
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:bc1176bbd1469c7a12ab492a50a10a35014ab367d757848eb43342366c1ec3cd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno-cli@sha256:47f62a4017530310a99e76089020d063d7eb3f54620a9d69f7a2008def7c3a50
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:74733fc92c86d2c9612f9dbb11f9d07c12fb838400f97416406c70277a2fceb8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:615efc549a622f99e97cebb47aeb25382b27544e8e73d0a28f4160ee51f4677b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:00ddab37375f54bb4337d2e820be4ec23b0713170ea92a60587ae3508b61808b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:42abef233927baa27d85bcd404694ee79c025a521feb5b04c26a7800dd14ca04
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:43df8ed12dea09ffedfc86e04d670992089eb2e625b7fb9cbd0b1564de8f8e60
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:11b9e8841fd65d5bc18ce00855aa45b21e6dfb7e82a9d083f75b1703b2830b90
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:b92afce7b66910718910cfa49f2badb5320a9a41afca5a8f9897ef4a1be42928
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:56f154a87d65baee272733980b6315b19f972a18fc488fad2bd204fb95237d06
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:46c0b90c56ac718efe940ee3c80c1d719223cccf10dc28660107bb9b56cb11f3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:7394d81152a5c0c9dc27b40bd2efee9f833b3712e501988d9dbe171b1e22c740
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:8fb6f80338a45e8acc5fa7da41a7c16223d6f89b026fa2dc4ac7030cb93233b7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:a05d3f9b8ebe2c36ae949c778de27e4276876ab542b60aebe7a1e4890a13b888