Sign inSign up
KEDA

dhi.io/keda

KEDA 2.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.19-debian-dev, 2.19-debian13-dev, 2.19-dev, 2.19.0-debian-dev, 2.19.0-debian13-dev, 2.19.0-dev

Index digest:

sha256:a31aa09e411ce056bdd3cd499cda4ec12f3b3b4fd7fdd9e5ee5d2c967f001896

Manifest digest:

sha256:429a20481a64a1c3a2012fa5f9efda458ae30d56726cec667faf4e7b6efaec06

Size

101.77 MB

Last pushed

20 hours ago

Vulnerabilities

0
1
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:9d7a455fc700e60a3b1dda982389f13f170ca16e9352336e4487df72f2fe14aa
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:aadc1a231d11351d026efd0ea9c3f443b4f4af5995dc3ecbf09c4636a63c6694
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:48c5d2f2f97af749a6b9f2851bd4585a8155a359d418253441dd9425f877076e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:47338c5edb48b07e5c2be5acab8c61b741f0558e1d857fa44af82b2967997be4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:fb764d20bbf3234a45a6c6219d8436035c911e7f3d1126e333c31446c732a683
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:347b5324cb9bf697b971ed2ba4255e53f06c9f7f0c0b56f5eb99a4e65f9c3e69
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:46495d5427050d37c98adaadc5943998f2e5cc474e9d7f5115b3492750d168c3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:73a6975222a66bc40dd6f7eaa1ea1ee190f2b78cbaf781ec939e321816243777
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:acbbd7876c233e67f3e8ad02a0ce7bf82f8472d7d3419cd7cd172ce2e50c6ef9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:f5e3a8e5a1d704a805a9a3cdee1878721467ea46a0d7f66eaa57ae0aaa6ec392
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:d82e79aac70ca22ad76e69eb1f9a15acf2f01d462b9d8c5c428ebf6b6b153789
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:13123d2e7cb57a205c3397c7aea882780032ab63791a5275af60aca3ac1664e3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:24149097e2f9d1fec12441561c2790cbec0ac498c6864a6af065ebf1e3899134
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:7dcb8ca0bb87ae45762c881c2ea28dca7bf47a38f07fc984a7f506938007bbbe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:a09f7150c6a2d8188734b3409108d23a9f77a67c902203732faf0e96b0ec1cc1