Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.34.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.34-debian-dev, 1.34-debian13-dev, 1.34-dev, 1.34.11-debian-dev, 1.34.11-debian13-dev, 1.34.11-dev

Index digest:

sha256:7912b5d35f4e4c353ec629a977cc1af89fe620e216cdd25580ba13743a09cfc0

Manifest digest:

sha256:e9072d44e44b831c91f32fc113af599888c68566f184ca1b8602e252466b1dd0

Size

83.25 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.34-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.34-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:ef5d59654b3df2d27f78a2a5201978539afcf950c3656130f96fbf375f74e65b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:0f2891a2ee4bc9408203d72b3f0de051a66630c45505ddc030885e465451b1c8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:5e6f32be28bbd06a2807739c25e663e222cc57274737bee0dcf7da0ac8781cc5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:719d2c967ffeeef9bcfdd36a8f8964b1e7d5298a332a600e9cbf217a731a9621
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:af19d8440e8e504d8f1cbaba8749028df10c03aa3a03dfc772bf93453e454bb4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:7009e93e39ec44a7e8ee30e2645b47a9a5afcb549b1c7de5df2cc2bb0bcc9712
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:2f524e1e408796b865b660ba187944b9c5f805db8b8c7038144fc8aa6ce93fff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:2b74b2dac43ff497987a9e1881ffbcabbf5369aee31b8fcb56a6bb21506a6f04
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:cd6711b913cfb542dcb69010ac6bf9c3df093e5dba9e255b1fb8383b02368952
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:b30945904eda20a4c46445af9f9409bd31cfdb774dd3ab4724d6c1e9407b7d35
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:afaddf336d4380eb3a630dd52e7bcb3c71ddcbdb002ff33318e6627afc056dbc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:fc6355f3fc8635256d41b9b4fd548aac0fb8e9ae698aec6dfec5d4aba87db10d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:82b77aec660e7b706b6d9f1696eb28ecff52318e10b1d1570144178202154779
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:5fa7c663deb6162897850c5e17e8998e8f71bdab2c16e2ad231316bba99a359d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:822b8a34b44cf4bc58084cd5dbcada42e8d5a8812d505281a42c355cb1d94de5