Sign inSign up
KEDA

dhi.io/keda

KEDA 2.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.19-debian-dev, 2.19-debian13-dev, 2.19-dev, 2.19.0-debian-dev, 2.19.0-debian13-dev, 2.19.0-dev

Index digest:

sha256:cfd2d6060ef7e098cbb96d7f7b248ff06d6a704b266498494de74e83b30b18ed

Manifest digest:

sha256:bcd5beaea3b3d80ad90720c22fc17286502cf8bf5cb509829d9aaa3e6bc1fe4b

Size

101.81 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:55be860d0dc8e0990b6ae5425f0873e93b59be6e13d11ef24ee75c7252b73e2b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:e24bfa20bbc137ad7cda7c16ea7082e69c2a80858f09ea57be5abecd0037217f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:528ded1f28d4969fdbd23550a0d4386c703901d04f7817cfe4c261ed9ec63455
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:f1ef77ca118d484a7c27595e13e80f01a8d95962e14e7d41c4908733d6a44f37
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:889027a23b52a3a857f105edf18b160e95b340c6f9cb563a512a217f58ba80c0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:e381469d32e0a1adb977899fbb1f9b1f1536ee57805d046ccf837e47b0cb2064
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:9d80f212ea656e3534e0f89b3155f067d6ffa613f06c2465d1373ec1050de420
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:8719d621e3c1999f14b9cbc030edc02aa6046402b0e31b7478799b47d132e7f9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:87859c2a5ff35633571073adf87fb9a4508169c6e82ac29374e9d6db78cbde14
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:e58ea89e418f98e23080c7c79a38d824a9274aae60f4da224adea76c44cc0c2b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:7d84be2241e8cf26386a0dc4bf3019cfa749d1d5f230294a673207c6b113db0d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:25a27c4086af4a9d6a9669274d8c259319891abe9317d62fc3263e6ea53ecd08
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:a2e244f5ef7bf3700f155d9abb3188c2b2d5d0b9df884b780a6d9f35d4cd5432
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:8f7fc02ebb8e367f432e047ba2d3cfbb0973856962d36cf727906edb71bc1dfe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:30e4c321a1ebbf8d0a5ce37428fe84029621d10be74d3b1d470ba2fb7427edd7