dhi.io/keda-metrics-apiserver
2.20-debian-dev, 2.20-debian13-dev, 2.20-dev, 2.20.2-debian-dev, 2.20.2-debian13-dev, 2.20.2-dev
sha256:0aa208e6274f014e751e3fc851ac01f593060853c2902b1c9c92dbe44ca43b32
Manifest digest:sha256:a706f6a6e56e8db91d7380f8adb19564a24d1ab847f8d20bd2df62e1789df8ad
Size
81.25 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/keda-metrics-apiserver:2.20-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/keda-metrics-apiserver:2.20-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/keda-metrics-apiserver@sha256:5fa005c6fdcc21e4ab1227738cb8f870c60d7986a4b3ba12575db8e0298a752d |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/keda-metrics-apiserver@sha256:bcf56412940c4edcc0f1baa9ed8afe9ee4f3f0c79b15bcf1d8c8654a2c3170ba |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/keda-metrics-apiserver@sha256:bafb8dee75e0ebc5a70a02db705cd18d42229cfaa953eb4e957357a08c09067b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/keda-metrics-apiserver@sha256:292707506d72272b518becec1db47e017d551625a7fdd16f4f1c002849f4ae84 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/keda-metrics-apiserver@sha256:ab0ee9ba10fea701bdc1661e69aa401e9c624defed126fa77ab9b6b74cfb43af |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/keda-metrics-apiserver@sha256:4bf60b8f60e92329b132f2746b630d1f04b60cffa3e74ec4d2b1fdc63653adad |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/keda-metrics-apiserver@sha256:07851bb2fbfd0dc024f17c534aa753f3cb1a21d6dde92b1ce27a4f5f93ccbf29 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/keda-metrics-apiserver@sha256:d1f8caa3de4b68b453b4fe9e976dae5e9e470183cf2ef574ba21da42db425db8 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/keda-metrics-apiserver@sha256:818a3736119093248161ff3e9b63609be3052f3280f80a282a4c05c9fbe20b45 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/keda-metrics-apiserver@sha256:b376e0836f0a817c44ff9408e1dc6f00db13562fca5f12ff65a0dad8bc3e2b99 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/keda-metrics-apiserver@sha256:150052a1d2ada6ea9affa2dab5b653dcb07e37f11f5be1f5a6ac5586c68f2cd2 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/keda-metrics-apiserver@sha256:a9925eb30c2cc94a584952fb291163cd31a2719af328d17dc0018b868e64fac6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/keda-metrics-apiserver@sha256:243b2c8b2d8e0850ae5cb199fe64659c6c5ab5d228fa6347db9766e4ca71a57d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/keda-metrics-apiserver@sha256:be2a0e7be6bbfb8df2cd58f4816b5c401da5169a5f2894ceb120f285b810f824 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/keda-metrics-apiserver@sha256:5430ae0f5832aa067e000e9ee8dfb116cb12efdb6753f171aa2cef04ca88c392 |