dhi.io/fluxcd-kustomize-controller
1.6-debian-dev, 1.6-debian13-dev, 1.6-dev, 1.6.1-debian-dev, 1.6.1-debian13-dev, 1.6.1-dev
sha256:675ad0c9c9e5d2594e090d7227a27426570e47e67b94002e6be9d5e435312ef0
Manifest digest:sha256:9e122a8a8a9abd4275ed4e1b973ad51f36274e6b1b33e362982530d849fad594
Size
66.80 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/fluxcd-kustomize-controller:1.6-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/fluxcd-kustomize-controller:1.6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/fluxcd-kustomize-controller@sha256:b229b9a62828a7cead1233702c2be103d919ce0d9852f7aaabc35b7bed88cd1f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:d41a584d9d74a17bb5cd281f55089e854e2fdf36c41a15dba3a146b0e6abe22c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:c11879a69f15dabff0541668459bbf0f7215f6f62e9bc5d1d1ca56ab5be37395 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/fluxcd-kustomize-controller@sha256:9d063141efb8beb9119d6dc3cb566c2a0c458f44e6dd275e5ea6854163b94538 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/fluxcd-kustomize-controller@sha256:42d754055c851469c58c68e459428a4f063db8d020ae970d9556cf11a8b67e6e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:e19a73ca8f50267c3d7eb4dad6234d65778eeb96f7bb8ddbe42b64b3c0428dd3 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:10466745e30e6054fe6988c58a7d342904f114225efb5e278372a059a3053372 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:ecde2181def139115391eb77cd42c6090fb303bd44f5da3feb54b96e87310bc6 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:534b3abbd1f76ee31474da075ce7a0454e06a474466b41c89c3a90e50cfcbb39 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:83e112f236368ecf0f3f66ecd425f4a47733b22837d3cfbc20c0af7efe2efdde |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/fluxcd-kustomize-controller@sha256:40a62e0692e1a682b97271b4a558a5948b2e3275a78dbdc3890381df68f2d9df |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/fluxcd-kustomize-controller@sha256:e4a1291651fa5d536d9dace4e0fd31f0d49cf598dbc328b02ed08680873529aa |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/fluxcd-kustomize-controller@sha256:3a6d4d8a900448a4e66a0ab4de1ea4f59c1a236d3400294fd914492e294b3ddd |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/fluxcd-kustomize-controller@sha256:e7a3ab2f3dd9d7afd764ef7aed87fcfa2da21b16e06a5deb7a1bbb79d9ac2f1b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/fluxcd-kustomize-controller@sha256:da04f9d6cc0d8b96ead5a8116898e06968dc8b1e0af8c22eb2d2d1a2f4778c07 |