Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.34.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.34-debian-dev, 1.34-debian13-dev, 1.34-dev, 1.34.12-debian-dev, 1.34.12-debian13-dev, 1.34.12-dev

Index digest:

sha256:836fe49a617b9e92a80c2ba7699826575e4860bc4902a72196b1cafc52af54de

Manifest digest:

sha256:b9643e08e533ee3e2c72fed1e0f5352f2f4b7868cef628c41882a3f31751ee90

Size

83.31 MB

Last pushed

16 hours ago

Vulnerabilities

2
8
0
1
3

Support

Ends Oct 2026

Request ELS⁠

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.34-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.34-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:cbb77d34d0a895cffe7dfae8b7709c8a45a8e9c9cdf4ea3ef40a297b853cc6a3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:9252a1bca78557611ceae7dbd2534de1d9e0191e67004041b7271ded14bd5388
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:f5eece43fb2e27f8c74f939fbed31ba234741656b3a34cfd4d69e6b3ef2cd601
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:59a8de49ac313ecb62ed51042e0e27b3f1a00fbce4a53b660ced4e7907c49b08
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:7c8af2a8c2eff955594e584313275d3985c7fd30c69f77ecc07a7f60e89cb168
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:3a989fb8e6c57fbb158b3159bb5142d497615695e62a04a232df54d271499391
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:7018d28db6652b0aafe3d185f55d49671bf19445bfc025b6151bb3785687c4fd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:0e9356f048c68eb5cdf74be8fdc9a2abf0a41c29d55a7bcfac490d99765f4f2f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:1a16cfdfc9b46da7af225229da28e2ee2d38196f8497c39291818703aefbd05c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:a420558faac8f42cd13564b7b30d929b00cce06e2bc78a53c2ce3c81b67e4255
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:dbe68ed25525ac9a299e0a6c566b710349156cf4ac92a7a364228723d0183058
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:6f398ca1f8e6763906b087829e4de799470ec48f702e1d96abb3ac1a1dc3861f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:608b87d968e53b48ba4d8c76cb050e8fb96446d3934bca7e2dd6da0bf21adbf8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:7091e09d2cbaa788dd6f234f814d0453209de69722128e1ef7a4cb5e1d097644
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:a778880ff7a352cf40b685ec94ef94b3ff69f543af894c54040f9213fca9e272