Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.17-debian-dev, 1.17-debian13-dev, 1.17-dev, 1.17.2-debian-dev, 1.17.2-debian13-dev, 1.17.2-dev

Index digest:

sha256:8ebb91c7281bc1de0082b60cc75a5e1d75641434986fe11f8d895c5be27f4a1c

Manifest digest:

sha256:0d3d52a86f755755dde9415181dd98dda0bad5dbc409582c1437f6a7fcdc727b

Size

81.04 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:fdce1c4e4ba6ecb7538b794e56d578c73802d64c565e68db9a83c1e57d86a455
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:334fe12ec12e7d9e99e6352e9c463b59572a88f8276859d35fe90f36af64a1d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:74b8f964d1ecb6500a45b2a414fd762f7dae76252d4c64bcba81835c3adba0af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:a5b8f46622a544966587c8e6fac1ebd04dad5e547d0afe81278ab272f1273d7b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:7e91ec17adf72f2746d54a18f7c84d6c858e07dd693738d4503764e6b2319f07
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:688f08ae97ca54729b4957522010a9d2aeec5529dbc2a5cee517cdaef4df267d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:576cf327c3831a73f6e8f01dd9d7bb97b55e29910860b323acdaec184198b668
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:fb4b8bb0c2f2974edfb31233c6034b81a1001c6dba435ed3701ee3a8aaffc571
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:35973d54bb22d0fd650d3c89dd824a16e89c6213baa2a7df553a7b847afb6770
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:8234b6ad9d5cb7d0cc55fa26eb4b4d5122ca59cd47dcba0c8ab7fb033bb79e33
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:f85108728cd273bdb3ffa4a18c0145f68dd3e901ff151a16d6d3fa94abe9e9c2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:b4614e726587c3beab2b96c8ab1974ec9fc589867398e6dcf28e7d5048eb1e0a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:393c800b0cbd707be19654e1d5c97d5f3dd236c17afd3b7a3a9dc2a9372f78a3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:60a7a1e2646c46d91904bd14dfb30e22f68c58f07a3a3af3d5eb0d1e33f5aabd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:bf479a42288421a5f3c8c4f8901c6f6f9118afb03618d663bfff96f409c077d0