Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.1-debian-dev, 1.19.1-debian13-dev, 1.19.1-dev

Index digest:

sha256:80e43222cd7d3761a03f5511f4add09f19609c25f0ac52e82c9eedc567f1178f

Manifest digest:

sha256:80cdaf6dd1202ef65ea38d7393eb5271b4c1481e0a536eb046f24772f13447bf

Size

85.22 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:d39bca783c68e27288969ecf824819958a4109b8ce12315989721c957b71b7fc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:34ee32a8bff607ea0eba1cc974dc0a13f123e4f91b8f04d8f6d66219ce09693a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:80fb242daf898022e022c55768d8e4184d94ea4d25784b6adb94362eb8ed402f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:734948084d47c79eddaab958314e942ceaf81994ba827f4c43c799e0eb86b8fc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:cab7ecd7609d5b1bdabbef8c41b3f25e4e891b8237b419c1d22e2621847eb522
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:8b1c12390f7ef8fc0a49421b8b5aaf33b3cfab24908f8cb9046d68a11ef525a4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:e8e46ce9247a7b1792ea8f1ad3b762aec7e2568467e03792795dc7b2f76afaa0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:e8202029f8a6cc360e80e2a58b842dd24cec6061678b91d0a971391d9007999d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:319975c691842fd05694bbee2a51f4b0aee01a5e4ebdc6b40e2e16d1e36898d1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:0e4146a6e7ed3629b633486665533cbeb6039bd4741521ea6226ea337bc3a69b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:6c33d4b0a068509c4f0b7ce9e2181b09d1604a8df92548756970f38e7277220e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:de0b9394523ae4d4fb9c32130d39d13ddafc4f8680021f0a107fe36e384ea179
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:f9f7bcafb2b2615af766c794c012f6e602d29f16a1d3f3ffe95c6ebc5a3e8bd2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:08cb85147b5ad0262f532bb52ecd093489121e2f9d20c3bf82263b14c5ec7992
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:361c68b64518834403349c24e8b76eeacb81ce1b3fd48c64c98637c43403e5d9