Container Registry
Made in Germany

Private image management in the platform cluster – ayedo operates Harbor for you including scanning and updates. Faster go-live for CI/CD pipelines, predictable operations costs, developers push images instead of waiting on registry ops.

Made in Germany ISO 27001 ISO 9001 DSGVO-konform DORA Compliant 24/7 Support
UDSVolkswagenLiebherrT-SystemsVendureecoConnextPortainerUelzener VersicherungenFJDDWTOCCReiner SCTCyrus IndustrialDGSIEMnanocosmosSplixSchwarzgruppeINHHadesHiOrg-Serverown3dTikfinityProgram51Buben & MädchenPrime InsightsTELTECElevantiqMoovitCFToolsStadt KölnVivavisAvemio

Manage images securely

Our container registry is based on Harbor and operated as a managed service in the platform cluster – including scanning, replication, RBAC, and updates by ayedo. Your team ships containers; we secure storage and compliance.

OCI compatible

Standards-based

Full compatibility with Docker, containerd, and common CI/CD tools. Push and pull without changing your workflows.

OCIDockercontainerd

Vulnerability scanning

Security by design

Automatic scanning of images for known vulnerabilities. Policies block unsafe images before deployment.

CVEScanningSecurity

RBAC & projects

Fine-grained access

Projects, teams, and roles for multi-tenant environments. Integration with your identity provider via OIDC.

RBACOIDCMulti-Tenant

Geo-replication

Images close to the cluster

Replicate images between regions and clusters – for fast pulls and disaster recovery without external dependencies.

ReplicationHADR

Kubernetes-native

Seamless integration

Automatic configuration of imagePullSecrets, policies, and managed apps – your registry is part of the platform.

KubernetesGitOpsArgoCD

EU infrastructure

Sovereign hosting

Operated on European infrastructure. Images and metadata stay in the EU – GDPR-compliant.

EUGDPRSovereignty

Pricing

Transparent pricing with no hidden costs – shared region billed by usage, same model as S3 storage.

Dedicated

Dedicated platform cluster · Single-Tenant
  • Dedicated platform cluster in an ayedo cloud region

  • Dedicated Harbor registry in the platform cluster

  • Vulnerability scanning & image signing

  • Geo-replication across regions

  • Own projects & repositories

  • No ingress/egress costs

  • Custom SLAs

BYOC / On-Premises

On your infrastructure
  • Fully dedicated

  • On your infrastructure

  • Unlimited repositories

  • Air-gapped support

  • Enterprise support

  • Compliance-ready

  • Custom SLAs

Comparison with Alternatives

Managed Harbor on EU infrastructure – with scanning, replication, and predictable storage costs.

vs. AWS ECR

Criterion ayedo AWS ECR
Jurisdiction EU / GDPR compliant US / Cloud Act
Pricing €0.05/GB – transparent Storage + transfer
Scanning Harbor included Additional costs
Vendor Lock-in OCI standard AWS-specific

vs. Azure Container Registry

Criterion ayedo Azure Container Registry
Jurisdiction EU / GDPR compliant US / Cloud Act
Pricing Per GB, clear Tiers + geo-repl.
Kubernetes Native integration AKS-focused
Support Personal, German-speaking Ticket system

vs. Google Artifact Registry

Criterion ayedo Google Artifact Registry
Jurisdiction EU / GDPR compliant US / Cloud Act
Egress Costs None Varies by region
Harbor Features Replication, RBAC, OIDC GCP-specific
On-Premise Available Cloud only

Compliance & regulatorische Anforderungen

Die ayedo Software Delivery Platform erfüllt die Anforderungen aktueller EU-Verordnungen. Von GDPR über NIS-2 bis DORA – designed für regulierte Branchen und kritische Infrastrukturen.

GDPR-konforme Datenverarbeitung

Privacy by Design & Default.

EU-Datenhaltung (Deutschland), Customer-Managed Keys (BYOK/BYOHSM), Verschlüsselung at rest/in transit. ISO 27001-zertifiziertes Datenschutz-Management. Mehr zur GDPR.

NIS-2-konformer Betrieb

Resilienz für kritische Infrastrukturen.

24/7 Monitoring, Incident-Response, BCP/DR-Prozesse, Supply-Chain-Transparenz (SBOM). Mehr zu NIS-2.

DORA-ready für Finanzinstitute

IKT-Resilienz nach Maß.

IKT-Risikomanagement, dokumentierte Exit-Strategien, Drittpartei-Risiko-Management, TLPT-Readiness. Mehr zu DORA.

CRA-konforme Software Supply Chain

Security by Design über den gesamten Lifecycle.

SBOM-Generation, CVE-Scanning, signierte Container-Images, GitOps-basierte Audit-Trails. Mehr zum CRA.

Cloud Sovereignty Framework

Digitale Souveränität messbar gemacht.

EU-basierte Operations, offene Standards, Exit-Fähigkeit ohne Lock-in. Mehr zum Framework.

Data Act-konforme Portabilität

Switching ohne Hürden.

Offene APIs, standardisierte Formate, vollständige Exit-Runbooks. Mehr zum Data Act.

Integrierte Compliance-Roadmap

Ganzheitlicher Ansatz.

Wie ayedo GDPR, NIS-2, DORA, CRA, Data Act und ISO 27001/9001 systematisch adressiert. Zur Übersicht.

Integration with Polycrate

The container registry is part of the Polycrate Software Security Framework and integrates seamlessly with Kubernetes, S3 storage, and your CI/CD pipelines.

Managed Kubernetes

Pull inside the cluster

imagePullSecrets, policies, and local registry endpoints for your managed Kubernetes clusters – without routing through public registries.

KubernetesHarborimagePullSecret

S3 Storage

Scalable blob storage

Registry data on S3 storage – the same sovereign infrastructure and per-GB pricing model.

S3CEPHStorage

Polycrate API

Central management

Manage projects, credentials, and roles via the Polycrate API – web UI or infrastructure as code.

APITerraformGitOps

You build it. We run it.

Excellent performance and maximum uptime - that's what we wake up for. And sometimes even in the middle of the night.

100+ clusters

under Management

We operate more than 100 Kubernetes clusters in production for our customers.

300+ databases

under Management

We operate, monitor, and protect more than 300 production databases.

1 Petabyte Object-Storage

under Management

We operate one petabyte of object storage for backups, artifacts, and application data.

100 million timeseries

on average

Our monitoring systems ingest 4 million datapoints per second.

38.000+ Logs

per second

Our collectors capture logs continuously and store them GDPR-compliant — over 100 billion entries per month.

5.000+ Backups

per day

We write more than 5,000 backups every day to encrypted long-term storage — about 150 terabytes of backup volume per month.

270 million end users

per month

More than 9 million end users use software we operate every day, on the internet or on-premises.

99,99% Uptime

annual average

Our managed services are unavailable for less than one hour per year on average.

MTTD < 5 minutes

on average

Our alerting typically detects faults and outages within a few minutes.