Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.17-debian-dev, 1.17-debian13-dev, 1.17-dev, 1.17.2-debian-dev, 1.17.2-debian13-dev, 1.17.2-dev

Index digest:

sha256:82c8d337dc77ffeceeb5a5d11a778ff3eab7fb13f4cc7f1ae05d9f2c416f4871

Manifest digest:

sha256:d4106023947e04069a3b5c5cf0e7825c606a073bee18f7cb73dfc4a422bd7f5e

Size

81.05 MB

Last pushed

2 days ago

Vulnerabilities

0
2
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:ff01974fd165f68d5f6aef9ea2f61d30f9495440bbebb2c954f70da173f40412
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:bc8e94c7202c11e0e8e1adc7dc7b2e9234ca7f3f0b4ccbb424f3e8753790bdd9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:e03526db6acc31b4010f3ab074ce0e1a27088f304dc482d55c10cb1239e17042
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:a92b64dff87c8d062d62fcb5ad9e51edb00379287023e194a9c1e359d2e33958
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:e52ffa821fa9af66473c1810169c4a66052321c5640680a5f5f4e24d171ed0b4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:c353811d36f0e544d5a4b3f81a4147080592bde35af71c2818588b25483d9864
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:4c490a37b5501af011be166294d4702f71bef571392ca8a05125ac6eccb67f7f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:006cb419b511305550867817a5a35db52af3e9bd93d0e9af11ff4317bfb7d2aa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:fc0fa813945f7688134e1e7ad3bc9d209a115269862c322b82c536df83ea34e2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:1e40b941c1e70a4f9ad907fcde59d3bf6fcc8458c2236c6ae23ce1872349c0a2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:a31c236eade6c767f0fd1fbce81bd11987d44c678a823d5b94f441fc2a228362
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:2b4ef55097a76ae65f7b9b8acd6b155af6515e350d7cc825f67bd93f95ee2ed5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:712fb6abac339a6ddf02e33c188e9a6e9880e6112dfcef4635bd10e8bff8b3e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:5684ef961e91222ad7cbc476b1079694ad55173ac3b89fafc920df2e4d4c2716
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:f82e81a0ae71baa2903ea06d5770f81db804d348f5ecae20dff4c58d27ffcefc