Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.17-debian-fips-dev, 1.17-debian13-fips-dev, 1.17-fips-dev, 1.17.2-debian-fips-dev, 1.17.2-debian13-fips-dev, 1.17.2-fips-dev

Index digest:

sha256:9b6f6236ab5840797f544e82221b04a1f9949efde4a8c7c4b61bb15331a631a5

Manifest digest:

sha256:86a6706c845b3a53f1769f19fa167849a050ced36d7c02c6f6bb95c5fe88ea84

Size

81.80 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.17-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.17-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:4c5a2c3135e3a7545dbf715714aa565ef2265e77a1bd3f6723782622e2029876
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:5b38d14750d64f9b2b7f219cca9ed49667372f2c113a0f68e1e5c784b54454be
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno-cli@sha256:3d3d68768f9cdbeb9bd000d66a170dbf77e00ef53653b443bafba0e833fc251b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:d99f9f6ad39bdb9bd9b7342eaff6cefb2c492c920ae677ab4c9fca488ba75e45
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno-cli@sha256:98afcd5913fc5f892260a9af5dbd7bd452264eced50ad341defc179eaff126bf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:337476d3ef1eebe991cfa17120e849feedf76abfb2f08b812e4d28ce98dc2479
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:5bbd640cb3f5dd017cea9998468d12493b8ab9f1487fdba9fa3e3d1a6f24585e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:f3b5b7be2b4813e8538eb25a58f30437f40ddcf5ce2a826f4ba858f7c1cdb1ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:fd4c3bd74837d124c6202748eb7642af6689ae38944cefb67fb00d832919da6f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:4acf0ec114b42e0859b9f1da57b59dc0f038006f7953f7d725f0dd44f0c32488
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:2799e96176114a2f3b751ac5d889ab971e0baa6998df5c78975eb4b6d179f67f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:b36e41da7bcd5fd7266b20f80717170c1293f1cc331026a5e220d2c949c275c6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:990889729077e6b6ba628792d86c2b5f60dae25aa95903192cc96f4c50d5a0ce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:fa797c4049e554bbb41c3230e8d3292bff4373cc8bea4b1700418e8c83425926
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:1a905402bfff993ccacc6a824a0e0fb42e1a90b8cd97c20e9836155be3d6ded3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:dcce0ae4e47a69709e541dcd463430ad15c43ace1cc5475bd3de5b271ae74e65
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:9e3f6d5ca6d1c1b7d1e17fbd2d171af821e03ce1a0eeaba07c76237c1f8274d7