dhi.io/k8s-cluster-api-controller
1.13, 1.13-debian, 1.13-debian13, 1.13.6, 1.13.6-debian, 1.13.6-debian13
sha256:7666481dbc36a6016fa4ebf53333faf7975ac10af25a506e2c692494fa6cf9cc
Manifest digest:sha256:d534f6f8f030190735318f745072fc74bb0a7e4a6c4f71ff92bac6a41b10fd6a
Size
17.91 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8s-cluster-api-controller:1.132. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8s-cluster-api-controller:1.13 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8s-cluster-api-controller@sha256:1639921e87fb225485bf7722345bcced72689553ce94378e346780467f490f09 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:e29ecf6e1eaaaa5507e142ceec37bcf2b12a9a76cfa0a5c4c9367f9973e85092 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:773aa807fe197a5e09dc5d75543afefc907449f149a36853079047ce544eb9a3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8s-cluster-api-controller@sha256:6a11efbfc5c9486bc73baa97422775942416e729c940528d0a5162249d1a4d48 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8s-cluster-api-controller@sha256:38b7787e8d871c1373d799074f5322902e27c23e4f3b98dc314b59fed02fcb92 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:8133f80719f8fb6fd087f495cdb3e20a0ad5d9033b45bbf175a48e941cd9571a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:cfb013ef20674c96fb5a01748d16186254e6e4c48d03786299403c15763ccefc |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:b23c6e88aacf5db49c24b4912adf4148a1cfee4d09cd58cbf792c580ef03c3b9 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:ee5735e4c9dd9e8ecc51f5780b6d2db5856a3a48fc0c74e35fb6391d9f62b692 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:4f54a5262a53d6ace6ea1cf4b9c75ae7f2d65164ca4b032eabdb4a019e36f82d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8s-cluster-api-controller@sha256:4089382ecb6f9a3f8476adeca50317165402e208bbd604a2a2b48681c2bf2cba |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8s-cluster-api-controller@sha256:b90ce99c3cfeff26935e95bdb488fbe9761d0f17af4d53ded0d0661d0ff69fca |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8s-cluster-api-controller@sha256:f5d774f821b243b1878f22991efde160eed46cf362eef3d9ed2fccb9c2b507cd |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8s-cluster-api-controller@sha256:22f4a4f67b1caa1d1004169553de13e9ccf667799f62a11d8ed69a12bb11c0e1 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8s-cluster-api-controller@sha256:c2405f7e533708d9ff8401230a08dfbfd8403b93454ee267c41abcad98f152b8 |