Container Registry
Made in Germany

Private image management in the platform cluster – ayedo operates Harbor for you including scanning and updates. Faster go-live for CI/CD pipelines, predictable operations costs, developers push images instead of waiting on registry ops.

Made in Germany ISO 27001 ISO 9001 DSGVO-konform DORA Compliant 24/7 Support
UDSVolkswagenLiebherrT-SystemsVendureecoConnextPortainerBITMARCKUelzener VersicherungenFJDDWTOCCReiner SCTCyrus IndustrialDGSIEMnanocosmosInheadenSplixSchwarzgruppeINHHadesHiOrg-Serverown3dTikfinityProgram51Buben & MädchenPrime InsightsTELTECElevantiqMoovitCFToolsStadt KölnVivavisAvemio

Manage images securely

Our container registry is based on Harbor and operated as a managed service in the platform cluster – including scanning, replication, RBAC, and updates by ayedo. Your team ships containers; we secure storage and compliance.

OCI compatible

Standards-based

Full compatibility with Docker, containerd, and common CI/CD tools. Push and pull without changing your workflows.

OCIDockercontainerd

Vulnerability scanning

Security by design

Automatic scanning of images for known vulnerabilities. Policies block unsafe images before deployment.

CVEScanningSecurity

RBAC & projects

Fine-grained access

Projects, teams, and roles for multi-tenant environments. Integration with your identity provider via OIDC.

RBACOIDCMulti-Tenant

Geo-replication

Images close to the cluster

Replicate images between regions and clusters – for fast pulls and disaster recovery without external dependencies.

ReplicationHADR

Kubernetes-native

Seamless integration

Automatic configuration of imagePullSecrets, policies, and managed apps – your registry is part of the platform.

KubernetesGitOpsArgoCD

EU infrastructure

Sovereign hosting

Operated on European infrastructure. Images and metadata stay in the EU – GDPR-compliant.

EUGDPRSovereignty

Pricing

Transparent pricing with no hidden costs – shared region billed by usage, same model as S3 storage.

Dedicated

Dedicated cluster · Single-tenant
€799.95/ month
  • Operating mode: Zero downtime
  • Harbor in a dedicated Platform Cluster

  • Vulnerability scanning & image signing

  • Geo-replication across regions

  • Own projects & repositories

  • Custom SLAs

Comparison with Alternatives

Managed Harbor on EU infrastructure – with scanning, replication, and predictable storage costs.

vs. AWS ECR

Criterion ayedo AWS ECR
Jurisdiction EU / GDPR compliant US / Cloud Act
Pricing €0.05/GB – transparent Storage + transfer
Scanning Harbor included Additional costs
Vendor Lock-in OCI standard AWS-specific

vs. Azure Container Registry

Criterion ayedo Azure Container Registry
Jurisdiction EU / GDPR compliant US / Cloud Act
Pricing Per GB, clear Tiers + geo-repl.
Kubernetes Native integration AKS-focused
Support Personal, German-speaking Ticket system

vs. Google Artifact Registry

Criterion ayedo Google Artifact Registry
Jurisdiction EU / GDPR compliant US / Cloud Act
Egress Costs None Varies by region
Harbor Features Replication, RBAC, OIDC GCP-specific
On-Premise Available Cloud only

Compliance & regulatory requirements

The ayedo Cloud is ISO 27001-certified and meets the requirements of current EU regulations by default: GDPR, NIS-2, DORA, CRA, Data Act and the Cloud Sovereignty Framework.

GDPR-compliant data processing

Privacy by Design & Default.

EU data residency (Germany), customer-managed keys (BYOK/BYOHSM), encryption at rest/in transit. ISO 27001-certified data protection management. More about GDPR.

NIS-2-compliant operations

Resilience in operations.

24/7 monitoring, incident response, BCP/DR processes, supply chain transparency (SBOM). More about NIS-2.

DORA-ready

ICT resilience, tailored.

ICT risk management, documented exit strategies, third-party risk management, TLPT readiness. More about DORA.

CRA-compliant software supply chain

Security by design across the entire lifecycle.

SBOM generation, CVE scanning, signed container images, GitOps-based audit trails. More about the CRA.

Cloud Sovereignty Framework

Digital sovereignty made measurable.

EU-based operations, open standards, exit capability without lock-in. More about the framework.

Data Act-compliant portability

Switching without barriers.

Open APIs, standardized formats, complete exit runbooks. More about the Data Act.

Integrated compliance roadmap

Holistic approach.

How ayedo systematically addresses GDPR, NIS-2, DORA, CRA, Data Act and ISO 27001/9001. To the overview.

Integration with Polycrate

The container registry is part of the Polycrate Software Security Framework and integrates seamlessly with Kubernetes, S3 storage, and your CI/CD pipelines.

Managed Kubernetes

Pull inside the cluster

imagePullSecrets, policies, and local registry endpoints for your managed Kubernetes clusters – without routing through public registries.

KubernetesHarborimagePullSecret

S3 Storage

Scalable blob storage

Registry data on S3 storage – the same sovereign infrastructure and per-GB pricing model.

S3CEPHStorage

Polycrate API

Central management

Manage projects, credentials, and roles via the Polycrate API – web UI or infrastructure as code.

APITerraformGitOps

You build it. We run it.

Excellent performance and maximum uptime - that's what we wake up for. And sometimes even in the middle of the night.

100+ clusters

under Management

We operate more than 100 Kubernetes clusters in production for our customers.

300+ databases

under Management

We operate, monitor, and protect more than 300 production databases.

1 Petabyte Object-Storage

under Management

We operate one petabyte of object storage for backups, artifacts, and application data.

100 million timeseries

on average

Our monitoring systems ingest 4 million datapoints per second.

38.000+ Logs

per second

Our collectors capture logs continuously and store them GDPR-compliant — over 100 billion entries per month.

5.000+ Backups

per day

We write more than 5,000 backups every day to encrypted long-term storage — about 150 terabytes of backup volume per month.

270 million user sessions

per month

More than 9 million user sessions run through software we operate every day.

99,99% Uptime

annual average

Our managed services are unavailable for less than one hour per year on average.

MTTD < 5 minutes

on average

Our alerting typically detects faults and outages within a few minutes.