Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.95-debian-fips, 2.95-debian13-fips, 2.95-fips, 2.95.12-debian-fips, 2.95.12-debian13-fips, 2.95.12-fips

Index digest:

sha256:c17c1f60abc21e5eda9c1969f33d313cc295e5f80bbc0073860115cd32053a4b

Manifest digest:

sha256:ceee0001c8c8ba0998011acb632eaa50113de99b260ce2f0b7f88b8430a45e52

Size

97.17 MB

Last pushed

3 hours ago

Vulnerabilities

2
14
17
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:9d584ba2bb56c677dff90e25cc28e89b691e384d6147347107e45a5054faf6c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:7b2e111b00e73bcc9e4247754bf916c6ef5ae72507f1f09eeca603066add0319
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:c3b0cd2cebff8bc210572c1a4854f4dc92975b95c81cdbac1eeb0d85d560b720
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:82f415e4c773b17b61c8d4d770ec6ff3896ee3d8ac7be2e9929cd3997a9c5b1b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:cede4fa8ddab431cb6d34b99ed82feed8c664fdf4edcd920624b384482926615
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:f090a910392b7caf977477df79e62e2509f188ca461ef7228ee542712643cc1d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:ddd0974d9679e7fe4154c9516d18ef33492e49a7ef07186a990e8ab0414134c0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:fd8e02e1f67e085cd2a6fbd127041c44053cf0930942a556b88903f3b781aad1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:fff7b4effd6740e7b93563b211f52de6c2b7220c438a51c92a98b5ace407820e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:d30940105f2bca21e97178d10f8890022bcaa14113d36c232d9f00f9f92c06da
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:98f06a3ab75667af501817773e73f6b22d92ad250f55175f12f3bf7930661b31
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:b8dfc67226c0c5191e442adb10b82fac78c2a74a78457ebebd46d60da3face8e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:255b57c79b20643060ea5a481898fae905981c772339ffaa30720b7fec0e4cce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:07fec327306ca66d12b0b9aa3423b2a7f526044fb7d8baed5bcefb27c3da92ee
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:8b2e41551a6f60d3a0b0de41647fb2109d11a834b406d82b02591cdec9e731a3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:6c6cccac850124fd51677d055132f9ba5cd9e1c9c2f0c70c834f88a7b89bfba0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:11163c519e63df0bec938e722255718c8a8cdb87122cd42f1dca5360c1d516ba