Sign inSign up
Kyverno

dhi.io/kyverno

Kyverno 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.17-debian-dev, 1.17-debian13-dev, 1.17-dev, 1.17.2-debian-dev, 1.17.2-debian13-dev, 1.17.2-dev

Index digest:

sha256:4e77c7e1806d99d6e6de5b8a920b7a07a7eec5d15eaf851d7dcede924296453b

Manifest digest:

sha256:42c155e0251d72f3d13f23eded55183984d42ece96afc29d62361b8b808b2df9

Size

90.26 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno:1.17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno:1.17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno@sha256:e971dd9f700885348d12d40c107ed84b81071ce1d9848c9d4da33f9c85c7a146
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno@sha256:bc87002c7dae055b45addf1b02b94e3fbd57297a5a38fbf229d967bee769e794
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno@sha256:40f309e9520bef0bd4d9b71e6e6e50eeeb73d1020bd1c7f3fbba95ae39802212
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno@sha256:b0ab07474be69872c9871d82da8d5e5eabfb03e3cbe001a5432d4a5002bdfc6d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno@sha256:7250abe789808c8df4ff22d2a0fe4befa60f90750719ed11ec49e8c54f3a9ded
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno@sha256:98f37e1df72058782ca511feaed8c9e331c132a2d72b028b0ae20a2f898fa175
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno@sha256:d1684f3832cc3e41b7155efd0300720d862352aa9df1c72360fe5d5f3cb6d28e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno@sha256:ddb95d0feb744bd2f5f340570f52f4ae0350fc890154b9deefb0366c968ad0e4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno@sha256:cc0244c14f2cee50b75855d2f6a4e26348e26002e197035a3a8959d21b1cd8b3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno@sha256:28dd2f87cb3076eb359e47c4264479628d227f5cf947f1e058b0ed45833a54a6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno@sha256:26153b81178bcfccad538193c71e09832b7e7127ba148019a78ad7ff9b136279
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno@sha256:6161b5d188903f0b4111319b866d48b0e9f0cfb41aa1d8daa636d63dc0ed58a2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno@sha256:67378f6585b5c309a6a05c4962582ab4a395528e65d3986dd9a6fa4fcae0a615
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno@sha256:9ed85c4f763c37b794926d7b15dac1d3bab5bde977c59000ac2eadd8c1d04de1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno@sha256:8d711024256cc29ffa2bc2a6e0274de7a7b48cd8096de2fa5807575f80093ebe