Sign inSign up
KEDA

dhi.io/keda

KEDA 2.20.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.20, 2.20-debian, 2.20-debian13, 2.20.2, 2.20.2-debian, 2.20.2-debian13

Index digest:

sha256:f65147f4b896d46a1bb2e00e9a7277818b65a76107c70aef41400ade66690ecf

Manifest digest:

sha256:b34c26a33a4e4fa9b116244c17756e5340d570826e155c7cf0006f3ee92addf3

Size

40.30 MB

Last pushed

10 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:4306f285accbccd55f786c6dfbeceb04de0adf35eb4ebb634b9c6aa616a36597
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:403e4426dcf06f877f2e36ad00942cdfa20ce772a808911e016d86f41b51678a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:8edc93038286799ead541fa251732ddac66b694f3fd5933a36f1160058ed9a42
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:d7d38b94d20733190c7556f8ce21974e872bed27377bd59c4dd25c36a6c46cfd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:cf2deb554b87c726811ec0d2a625354f24ea8e3891753c1484b97677c5c67841
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:fce20e54c87d87f554d87f1d17cc3dd5061a68b8362a92e49de7cfbee6ba7435
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:eb4b9dc136346a71ad010c2eb0fe7fbb4c45d39c22599f06b1f0a97160a174d8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:73d8a6c1ab7c40ffc8f58a4165f70c70d4486689853cc68b70cc236fcd8d2cbd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:1a09296edcc1ddb801c9c36f82fe6e0e5eb77ba93614159f5c017b2b31e579ae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:75e251e99017bf53dfd1b4ddc931df395e9c5897ac73dfa0096a65c0a9b98537
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:d805d74d2b12c6855e00a3363f7ab78a61e91a6f374f63fe7b2cb73dd223e27f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:e9f75345680034d9461718df56c1dd917e6d25b0edda225d40f245dea3441d22
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:7922b87ea2765502f47b3d36b17cbbb9d2f86504e8ba6c868d53ea602dbac652
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:f4173a709564c000ea9c6ccec2420af2049b74a17e629b00beede880764eb0da
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:77352073654a719d121311ef0a3b8261f92cc733877ba3b3966da26cbee4f302