Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.35.x

CIS
linux/amd64
debian 13
Tags:

1.35, 1.35-debian, 1.35-debian13, 1.35.8, 1.35.8-debian, 1.35.8-debian13

Index digest:

sha256:c8034e53067ba36fe7cfd8fd274de199eeb4b265052d8bb826ccc11c2e2cefd7

Manifest digest:

sha256:c319932f64401e4206ea9e251a0a93845d374bd16b3bcf197532b6c871b303da

Size

29.59 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.35

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.35 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:883ec68b5b30d18df1f7e182b95837f7fdc08dc2ecc672313e75453ad53837f7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:dd83c3911cb12340c5fa82bdc394762c553f95d0db767b8f65a5b0ce002cfb53
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:7b7fcde8c7a0219cb4e0868b9bf212249ed400881edaaac4a2adda854fb277c2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:0463751628e77c49676d7deb0db4ff1fac3682eb51de9f4f57e793de45fc4ebe
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:0240455072b0bbadf03a7611c8e3a5e781a02f48506999393779d2fbee684f78
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:8f1f942c1fb7e6cc20600e7488b96b131dad90de7e93967be69770d0aab5963d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:57993a273ccc024d72222ceb102fa6f2c1a67e67b54bb0b7ea912f38575f047b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:b52f38e9c55aba8d5aa3e56905768d84bfa7eda42e58a28ba0a5a58c97712cfd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:65926209e3cb743cfe840a7993c83f89a3da8a6533466581f78f6296f8338fe3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:753e53643a739a8a1d1f5697a68bc610091ddfcc2983f31d7ad81f762b66146c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:6a640ff6ab5e451aa2a2f4351bd39306610b479ae3dc61cd40539fed75411207
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:0c3df361792c4d44be90069e35860c040bfb44ad6a58d1d7dd52cddd33ebb3f2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:96829bf8e27e00f52e25246ecf3df74b0ffa12fb0816dfdd7fd3e1fb3e929f50
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:8cbf76fe01d056d1d7963e03f2c66764396430222cb3029762189e2408f31582
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:85ccd8d4a58eeb6b8df3243716dc7e9eb589b94284f48372ee4ecb2b6f7df2d3