Sign inSign up
KEDA

dhi.io/keda

KEDA 2.21.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.21, 2.21-debian, 2.21-debian13, 2.21.0, 2.21.0-debian, 2.21.0-debian13

Index digest:

sha256:5ed604e930b1d6d83d53fb989d44b7b693a210122a51d93c4a8eee98135ab13a

Manifest digest:

sha256:cff39a3f57ebf1281e29ae4e0d17ce1cc9c40c6e8e635ba106592569956883f6

Size

43.42 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:b83a08ca35db4b182af938de628760af1fb6c7c9bf52b3b79f8dc8b83eb90e0a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:e338105d2dcf54088c4acd42760309e8a893b3a131e0d3682d24449afabdc4b5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:24fdcfc40823b21ae3154beabdc700bf0181c9845002ef46f1229c5c43d757fb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:2885b6de567953d971548dda68144d9d22f53df7a7144f6cf1d0f44d433a7e3a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:2f937d133b32eac5d59c8f05d64ffa2cc3de3ffbe2dbfb0ed61489eb5dc9f182
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:2082cb38d3c038f9e34f5c20f0a098db84e654b0991e9e02121d0c518004a470
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:0fe9a3b774046bc3721ebdaabdd84041c9e68070b069b3ed3f8f2beef45b901b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:d55e3dd5b95c65fd12e9f6f255f7076d808c80124e8cbf6dc688dc211fceff4c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:bcf395c2a91af38f07b7711a882365b17d9cf1e7a6692cfc72a415f24bd484fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:ef6f5cc02aae17938d54c7e03859a1a0b7ec1993621dae3c62de2f7fdf4bfe4e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:af82233efdef61dad961471a310609fe1411823a60b139eb9c678e3a6e610c50
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:187740c7887ee022f02397825469307cfca2bf248e6f8c5d1ace8c6938fca828
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:efe26f68b640ec92209a5d7ea4ae5dc3579b7cf149381ab9a58551ae8e2a7b18
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:5e95d7f54fe34f98057c1d870ac8578dc46776472501dcebe138e1512a4acff8