Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.2-debian-dev, 1.18.2-debian13-dev, 1.18.2-dev

Index digest:

sha256:fefa0349df9695a0e999201acc351ecf5b5890631d376057758b6f313c4e805d

Manifest digest:

sha256:a59430394c7283dfd89efcd19852da83e26b53c4da0fbd16f514296e3a45dcd4

Size

82.94 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.18-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.18-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:06dc1e5b4eb1a910e08bb40aca31dfa0df3099f5e2df339896edb6e88007acec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:28df28d7ab236ab9a3091045f2da00f052ab787c4a4cffe59e1b28f4416dce22
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:2c2e50a524429f674403461902b3a35c9e8c2f886dca3a7f889e9591f598b42b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:73e9b13d82d2106f2b6ff3036376f166d4985e425e800ac273716826384db8ee
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:46245d8f73e0923ce153a316644707279b3b4a1b05c7926f229da23b6006fb5f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:512c6cbf5a3304a9b1d4bd16b90daab816d4632fd63ff4f928eeb4d63c993aea
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:2307ac9d7f572ca18a3d8f116fd006988d2cd2b3c2374b73b5aa56f6d4b61451
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:cc15ff86f46e83e1f3a225407bd539d9f520d145f1d6b2710dff75bda6a77d4d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:952871358f4343aec55a02b5e0be99c086e4ec6f8f798de6cd747064c4a1c5b7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:c643a879a06173bd664890eaa8d64382d9309cd24813786a2e8a2b88a7171294
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:5dcaa02fd045c3e15ecce3e4b7c9959378e9d89ff01376cb1a9712c5d9fcf5ae
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:4b8a5dbc911833e622368a412d8ea645320d22765f698c2705a3d1c7f5cdb265
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:3e54718399f97322c8adb69f1be4e28107ac3493655cbc1d29305ec9c7b3f479
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:3297f057591f03adcf8320c13620e1033d66cc5a0f14367bb5b11850c0f20736
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:8909c25b09b5786b30098af1c5b94aeb11051425c7b0a80d69870ac3bff79e0e