Sign inSign up
KEDA

dhi.io/keda

KEDA 2.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.19-debian-dev, 2.19-debian13-dev, 2.19-dev, 2.19.0-debian-dev, 2.19.0-debian13-dev, 2.19.0-dev

Index digest:

sha256:8b118271f23345a540d4b36dff14e4c8ec72df68693538c045aaab03a9fb0b0b

Manifest digest:

sha256:82e03ea0b165876df696d77d5a9edd5811ed47f897601e1bedd308b75bff0ada

Size

101.81 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:6df756a46c42170d2d986043485635276255466746ebe08375713cbfd47d07ac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:d4a439d3919a29278eb3d4b30a8b346585ab025d9014a915658a3acee98328b1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:ff95e98997309cafc10bf440306e11bcb8c2609be2bc68ca002caec205936977
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:55115fab25aee3fb7edb31ecbb495490219d2de92152635c14cd96f7651012b6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:438482bea6a611ee9014cc0dcb690a03f217b46444424705165f8a297d5c3cce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:6a13abeb340125b3a9bf341fd06ef4b7d0c9971ce5dca48c1b970f5831bf764d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:1128d7df1bd389abcf637c50511e64f42787c8055caf9998b062ccaf01e94656
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:364dd12470333446add9319c5170b20f95ee1271379a25715c9ba53c4fad5184
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:f0d242bd2cb1de7f0e22b1756af55df799020ff81022c129e078f60f5543c9ea
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:b901544e472c634da819bd8999b4682c54f071702bb6487f6f7165426f0d6666
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:5f8f707d668f87aaf7b39039209b531685466f226cdaeba5347b083ada9c25fe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:9904cf2d8545e1bb735d577dea7fb71c802ab647dd6022486664cd86b5cb7a26
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:c9a5e2d2a7e50ae992cfa87cfcfcfbbb3be384893cf9a63493627e2b28c6d36c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:8aaebae68f8bee22132ba61779d919d07133be773ea8f2836050a092a2c151f8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:69d173673bc1f4009ec98a35388233c9a908834f55b9ab4c7b8794087c312156