Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.35.x (compat)

CIS
linux/amd64
debian 13
Tags:

1.35-compat, 1.35-debian-compat, 1.35-debian13-compat, 1.35.8-compat, 1.35.8-debian-compat, 1.35.8-debian13-compat

Index digest:

sha256:195324cadecd3ea62604d27b5e4e07dda03a1cc413fd537ba7df6ededd4cc5f4

Manifest digest:

sha256:5204051b52dbebcfbc1b9f9fc21506ad3b1a4a45045cdb7ac24d13fe7cf32123

Size

41.09 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.35-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.35-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:8eaed16dc39f2f1c8ed6a2401688b466e9430914789bcb1e984edb3ba9785d7f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:0b99360505ef9c5e7202a9a8dd12107986ec355e79e2302ed6247b4e38240171
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:9173728e017a317d2a3807ad7b46ba206d019c767840601e21b4c49a50005583
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:8547a8e99b94a73802860bcef919499d739c22c651d2918c0d7bce46cf7b84bd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:75838d5d7c51a4da5e881f3af3ae7c154a5319ad1a60c9db78ad21c7131cee3f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:a65e9934094ee447f6f0d8139b59fcca359f5a396fd007fee31b91402ad1d468
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:ad62d73934c89d24abcd38f397435f618930386b2e1bb9355516ed7421b2ccb3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:12b691c2e232c3d535f26abbc3e70c68c607cfba36fa2e5be2240bc7c5f85863
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:4db8d69314ff064cd5c0f0103fe10bc6369630169e769ab14cdf7392842995ab
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:570dfb789235b93df0e4a3ac265b2b9c90a7b82aa5fd6ba6cd9e0f44d89531c7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:feeb90031ade432a7639cdd5882ec3a8dad67dbf6d7fcd155e363967e8d1bdd9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:188d357b37a21202c08a59e290953b0b6513747ed85722777f2e0471f0900de1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:40261c4b9927af286b94f09e6829b50b909a3352ae99398b69fc8513d97c7cf6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:f4fbe964f3b921218355514fad01eb23fb26dff2a9cee949d8a359e483e33b4d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:f5966c0a8ab6ed0151112e9515a06a90b0b00772fa42c4a5ced84af6f5295f8d