Sign inSign up
KEDA

dhi.io/keda

KEDA 2.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.20-debian-dev, 2.20-debian13-dev, 2.20-dev, 2.20.2-debian-dev, 2.20.2-debian13-dev, 2.20.2-dev

Index digest:

sha256:fd591d832c4532915175e8c64134268e964fd43f314bce3cc38bc881abdeebbc

Manifest digest:

sha256:8f2948b4ba3e4c8e367651247e522b7980f9baff3d0e5a04868fcbb168748e1f

Size

102.26 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
1
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keda:2.20-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keda:2.20-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keda@sha256:4aa7fa495ca9d7591d4375dce00bdbb4feb446623f83f5c226a214b939294c3d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keda@sha256:06bce098156e198cefac72ce73bf7fc16e78f2e13759c325d6327d268f9310d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keda@sha256:fccd3db04421d8e290456517edd9d90481dab51d323c0604017abff4463b1df7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keda@sha256:0bf0f8653e6f72540c26d711b52d80fd70698613773644b938f3ffc31d7267c6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keda@sha256:90a7f278da29b0659cb7137604e742ca18922b6701e1f040e87d9efd2f054582
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keda@sha256:91a27509e876665eb5ea851471c72ae2f2ddb7bd76ca346cc9cb1849b53c5863
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keda@sha256:aae3c5b56b8d5df244e8bd02e8022d8bd34b4a17a072f90572dd1076dbdbc48f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keda@sha256:9d5cafd0d219999092442b6c764b613a2d482abfa642ff09537b59828f95fc3c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keda@sha256:ad0235bdbe13e760630cfb339bfdb11d46f7214ea0ea625d1ccc99371d71836d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keda@sha256:3b524c58766352e4ba5913d0366dfe3b5c4a7622f2ff1e5ce942527bb5b8521d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keda@sha256:1583ca5729be54f662bf937322635b35898f6aefa64683c3790c8962765b9462
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keda@sha256:5afd6869cdddbd680bae7bdfef9a049219fe77a0ec184e5606247f46d4c583d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keda@sha256:ba2d3812fc6d8bc1fe19d94aa6d2cba5d057319ead8ebc9aae98db7fe9e14658
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keda@sha256:8840f19618d2caf6a146241d91db4f2229a684f3a23b12ee9265ea28d5128f32
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keda@sha256:eed4647731447e3c88cc6f80a9f82c600d03dc998f982d83be6831a60dad17db