Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.225, 3.225-debian, 3.225-debian13, 3.225.11, 3.225.11-debian, 3.225.11-debian13

Index digest:

sha256:6a98de148ebb071cf87f587f484baaf46a31fd5df4932d5fbea51d393bd975b3

Manifest digest:

sha256:bdfec0b94884649bec9a6a16dd5d030ef898c09612425aa5704d622ee55b491a

Size

196.32 MB

Last pushed

15 hours ago

Vulnerabilities

3
20
22
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:dbd8a79fb3ef3a68fca4cf9f877227b2921be9e4172f9aa6b5deb248ef6e36a2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:9a1974e26c8f95a552284f085327b869502e5c34fd6be615b9c56a4b32d6b7e3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:9a475744f54051e0f994c90f679a5d0c5b74d8238ac9b430f17fb80baeb45bfe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:6dd89f17deb6e59aca835cb439f0cdc6586430e113d19c24b4f203acf5ddd147
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:d93edc6da35ee60ee5ca98280a36ce6930310b33210b19fb459ef4158d316473
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:d6ee6b9d5778e0b9ced038964e229a95abcd031159ad779eb631765f43f34d1d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:9aa2ada76542a5abbb66ec52735edce4f580dbcc6fe170bae30f17408882ba8b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:d66bab8435bfd4d09c06f3082d3908047b9c2c31baef694de8a87376275a4bee
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:d9e555fc9027fec1016abe5e332deb86502b04aa07d368b45ca4ea00415bb791
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:5c803792c44fdd5e82391965dcc9572bc925866109eafe2b04756140d20af045
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:b3572c429c71a72e17be95ba09a46b2187413cccc9414df213524da539af2cb8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:2000f06c58662eaa9a08b5c1152954797ead9f90b9b385584d4aa9987e18ad76
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:e69bbc073ef2a23533dd160e36f70bb842d0001225d03b08ad05777ddad62b0e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:2b821a0daecf41e3d8875f9baa27129a5f87ec966165809a316af56f74d73c18
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:050c8077a9a631a6cfc6f485bc54d1535adb830f98f6dd5a422c1514ffd87b36