Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.36.x (compat)

CIS
linux/amd64
debian 13
Tags:

1.36-compat, 1.36-debian-compat, 1.36-debian13-compat, 1.36.4-compat, 1.36.4-debian-compat, 1.36.4-debian13-compat

Index digest:

sha256:82b12d88789b8762e0f5621e0339cb7d9d4086818c9180ecfde9b55a5a58e900

Manifest digest:

sha256:ac5b68f99fe2ba755abd532ad11d919b58bdb36b36152d9d09e3bdf9ad25eb18

Size

41.42 MB

Last pushed

57 minutes ago

Vulnerabilities

0
0
0
0
0

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.36-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.36-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:caed7850fd1c6f7a44a40425459318805a1ca6dc7541db0e08d2152ff24320ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:6c332be4bf8ee8b5bdc59e6688a780f4d869457bf768dd172a49a0cbceae167d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:420ae38179788ef50fb4eaea547efefe7d99369c2906f691c2865be5dab60e2c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:5125789b1d1142a7d048e6c672894198cf6a9a032349320fb2358b87517e04a0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:0e582cb8a5ed5adda472e97d2dd45c3ba9c25b01d845f6b173d6ef01c7097657
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:5415df83f86dc7c5d43f60aa4dbd621408bf3f193fe1e4efc8b8c38888978f14
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:f4b893e44f8c39ca41c5234ae7d36e585e721e20cca906c11028336f4387ce08
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:6067ed4e24c82491910c70a316ab9b637cdfb70dc054b7f90c2c3f9816d9b56f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:d43149c3a1be3d62b64c9f917dddfb07c66d9370af9bca4245a090d44ba77664
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:505d622bb04ca1b7c6d27806f0a54d06ac9b33b83c5da2d185ba47603d3f7f15
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:f727b34d6469ac804fed957585b1a58e1faeacf66deecab6caccfefd25cbf1fc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:014123dbeaeb2402a91bf168efec1062d58460544cf85983487acc3cf21ed7d2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:013e05e551b4bf09214589505c56e7c130b825acf6220fe8236027714f7988ae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:a73a443aa5b012e464b21ccf2dbe54a75e356ac38b6bee92c11880cd63991f41
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:4f309f6e4181eb56b6bb176870e72d4d09c183276044cdb3ec85b56e8767bce4