Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.16-debian-fips, 1.16-debian13-fips, 1.16-fips, 1.16.4-debian-fips, 1.16.4-debian13-fips, 1.16.4-fips

Index digest:

sha256:378a03323e3f991d5753598dc0242ff61a9de68d71a0ba177c40a100d6255fc4

Manifest digest:

sha256:a1b02061827ab64a66018d50986bafc371cd1364fcf0e855abc7783dbdb287d1

Size

43.45 MB

Last pushed

49 minutes ago

Vulnerabilities

0
4
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.16-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.16-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:88e27afd35cc019c1ed5faf8a89182ef2f261e61c508137fc3d9849c058f9634
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:3a11462e790a42ba658a07de2b037801620d8c4f0e3846bfbb39d91d8e93fae9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kyverno-cli@sha256:3b104af212070c5480b074d6eecb15e166bed65cc9564e74c493f1ff414a8fb3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:75c693eade983f14ee7e910657d3a396d4cb42d19d76b841d0522b7339155736
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kyverno-cli@sha256:2f530515e00edb602860a14f39a779f0df40d54543cfc48a57901455e686b981
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:946b0d35840a1a4c4de6d342d8811e4fa054ef5c5366f7b7461fcde563ff3509
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:bbb1aa740d8dc8c27e284b0c1778e69b6c20b4e796d815ed4d733010ec995db6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:cf5bcb117160d77114bef86b25c5783969acdac5b3f625c02dae12ad5e6a74d8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:0ab45694a4d2d2d5bc39d538539c9ab3f05646f8bdc5179019a93ab73b42c9cd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:11193f4905a60bc45b0a8b81c7ad1aaf8f35c70e4ca135095e55cf188dba1c0c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:84099c6996ebe8c8059f38ccbda22ae4268f581ccb02e6d00b881274d9083dee
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:3123355b63aef243b5ff7c71827d3057d6b1b5f8847f409e695d9fa0391e3539
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:1beeb8399c57b23d851d379277648e893bfca4c8865ed544187798f3ae2d9fb5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:dc6d4c0ddc0ab1394ac1513a6bbdde7e9e2ac3d9c80467c7185bd0ec8c03de87
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:814e8412d2ce538dd3de99e4287c9e7933ec27dc65ad0e9866f347cd2da6c6dd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:91431ae620116aa61c5375be1db3ca55c2828a1b4d899abec9de3c05f6cc8c0c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:b482f88341205c22fdf5bfa262f39860d35c626bfc31614d36530c953f3f0683