Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.2-debian-dev, 1.18.2-debian13-dev, 1.18.2-dev

Index digest:

sha256:fefa0349df9695a0e999201acc351ecf5b5890631d376057758b6f313c4e805d

Manifest digest:

sha256:a59430394c7283dfd89efcd19852da83e26b53c4da0fbd16f514296e3a45dcd4

Size

82.94 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.18-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:06dc1e5b4eb1a910e08bb40aca31dfa0df3099f5e2df339896edb6e88007acec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:8e72ca4d9dfedd33e19febf5063de8ac5a601ded8b21f578d9f1455f3c79f723
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:a3dcc3ca31e6d2ebe3be93d26d2c30177352f9369989441fa9cf5c2900667c00
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:361f396fec60bdd68da80610b9a2dbbf9049a936badb0600ad9d58574a791dcc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:af0cd0c5e1027ce287ffe81a007a07c855fe49cbad72a4d165d5d9c1c93fcb14
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:512c6cbf5a3304a9b1d4bd16b90daab816d4632fd63ff4f928eeb4d63c993aea
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:2307ac9d7f572ca18a3d8f116fd006988d2cd2b3c2374b73b5aa56f6d4b61451
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:cc15ff86f46e83e1f3a225407bd539d9f520d145f1d6b2710dff75bda6a77d4d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:09dc9275c9b72c8150eeb3981f506ca162ac751ea303b5c8185145eddbd13a97
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:0f114db9f1d432d59104fac46fed3958c1235917e93fd9df65a51a8f8621c268
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:bf850b193b235fae66620ed63059ff1d3855aed5a0b3ac302f55e1ae2c954eb5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:4b8a5dbc911833e622368a412d8ea645320d22765f698c2705a3d1c7f5cdb265
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:3e54718399f97322c8adb69f1be4e28107ac3493655cbc1d29305ec9c7b3f479
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:3297f057591f03adcf8320c13620e1033d66cc5a0f14367bb5b11850c0f20736
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:8909c25b09b5786b30098af1c5b94aeb11051425c7b0a80d69870ac3bff79e0e