Sign inSign up
Kyverno CLI

dhi.io/kyverno-cli

Kyverno CLI 1.x

CIS
linux/amd64
debian 13
Tags:

1.18, 1.18-debian, 1.18-debian13, 1.18.2, 1.18.2-debian, 1.18.2-debian13

Index digest:

sha256:f5ce5ca510b344f709a15e2feffd7e8fd06e5d21095d1c72cc8264129a810582

Manifest digest:

sha256:b8c1428081523276d1d3fbb71a5582e8491d316679944ec020a8913f7ed14878

Size

36.48 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kyverno-cli:1.18

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kyverno-cli:1.18 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kyverno-cli@sha256:cc1b4e46770efa209b5b5d3d55ecd8bf8ae43a37fbf3dc87a04a300844da1347
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kyverno-cli@sha256:7fca81441281df1929f6b959877fb93f047ad6d928fc440cc2c85d90c5a85dbd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kyverno-cli@sha256:beae5b8e429b5c03b0ed18d7323a1066f6b52879c62bb669c61fef68f7e307e0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kyverno-cli@sha256:fcff362c2f03fc3035cbc711c48fb1ac7e9cb845ffc0a84bf491d7f0bed4f60c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kyverno-cli@sha256:34d5cb082142c0f3c20606d4b6d9b48a9cfd12c3a8c7a04d88a6f86df064a87d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kyverno-cli@sha256:715d3bab550adbd3841205f26463a2165ff45aace189c4a102c9eaf01e1c2ac5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kyverno-cli@sha256:803356cc5fad908f689232ec79fff0eb0f43baffc49252c20b7456776f70f8c0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kyverno-cli@sha256:32388abcaaeba43afbe79c27418501cad8317df11f2cc44688dcf6094b67413a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kyverno-cli@sha256:4334f5c49e0a52bc29e832039d9445787c2152c4bb544a3f3826cf1c083e0db5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kyverno-cli@sha256:2ae746226b16d4621bca4992065980c5b84a8b08318d365f17fb1c1bb7ea1dcf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kyverno-cli@sha256:bd52ccd6ab1751b8700ee284a3dd3644152e02c0deb9b5bdff4edf1876bb2b2b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kyverno-cli@sha256:8a3fc2e13d0134454ddbd47c45693c65bb990eb65acb2aab76154d38fc1ab26e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kyverno-cli@sha256:ebf4c53ad75300cc355d794def92d0db87d2d95e4df7f615bec074fc5b38e923
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kyverno-cli@sha256:00e1550b2b5d1f478f12e51015a8717864c66db3bca739bf72e9c3e7bc1b5a7c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kyverno-cli@sha256:c5c0ed9a523fcd78a2beb755822c14312b4a589216cf8242c9fbec1aa2383ea9