Sign inSign up
KEDA

dhi.io/keda

KEDA 2.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.19-debian-dev, 2.19-debian13-dev, 2.19-dev, 2.19.0-debian-dev, 2.19.0-debian13-dev, 2.19.0-dev

Index digest:

sha256:6c50cd37ed7ada823c2f5f9dfb4465e2a74f716b053556c7bafa8d2394b61b98

Manifest digest:

sha256:ca069c921fac8ba7fdca4bb3764f2b3217bc041a3d05a58a28f8b280fc976d9a

Size

101.76 MB

Last pushed

4 days ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:e2d31d242b59606e3fad81c19c1f47acddfcbca40e886865133eba4ebc84e2a6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:30ac627f8625de0ae535e85c2052edb76d8f41571de106e6183a26c51e669fef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:37819f6c9bc6d5956926e0f9158ce36be92b9e5191e15d6d15ebe6e089ed91aa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:398c3bea3aef8d05db4467731ab8efda819211e3296e6fde607138161648e23a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:0ee13258557a60cd43ce5a3496f0b16e930b410ec6bf6b285244ff01221a379d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:825a2dfd5a43a293874f02decafea84d9aaacbc8d0278efe18d6ec7d8cd76212
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:abae86173875ea5fe62db14cf8585103140613070e89136eb23b4904eaa32cb2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:c1b3be5ab0e38ddf7cdc3e81a87015dbf06e454d0d73038f457b08f6678890e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:7e619bd159e262ad0424b18c52d85862a1f07a237aa52a58b4a2d7e1b5b74a5c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:5e60cb2f008c1c79926239647ea030d8b1e8ca5be2c9fd1b913269f8e30b3b6e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:c744672933563f3607732cf66d8f04c343e7949607fa56744c24264ea68501e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:11d73357517273365ef9f25934d9874523ec7125e7b1844586f4f1e30bddc59c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:51bae2aabc168940c67687af8041b8847e7b7a366bf574568e1c40b99d532f1d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:a7601011e6a985203e2a7069a2342983d3323ab6e578fe2610f015e95bc1ad00
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:602a3689bbc2aafd68db79fc3974e90f137e7c4539b341000fd25c5a27d62c25