Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.225-debian-fips-dev, 3.225-debian13-fips-dev, 3.225-fips-dev, 3.225.11-debian-fips-dev, 3.225.11-debian13-fips-dev, 3.225.11-fips-dev

Index digest:

sha256:6a4db802e6b745c402075e4912317b95701e6d6c4a4efe0846e1360f93bd7ae9

Manifest digest:

sha256:8ee6fe8a5d65b3e28cc4e1c783630c4b6cf09e0de53ae4d5e157388d60569063

Size

150.01 MB

Last pushed

17 hours ago

Vulnerabilities

3
8
7
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:20ceb39deeab8ceeba22aea595542d44bdcf442b55767021e1fb56ee1f2c5469
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:d566cc1c701b68de64fb739e369212eae5b2f83db12e879aa2c970690eafbcea
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:18c59d36b3bf79df91852c3e57ab87875503c9212fe9b451acdc0e57fa241b6f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:8f71814fd7bd5fe79f5758fe924f0896a39e119203de9d91bb9dc7cc6d9b8c5e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:820cd9580a9de153bb7595b2082f738e3a4e27e74156b5fde7e5a1c4eca2a9a6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:600c2c8c03174ca8f8b0ded1e4951bedf98d3147e864a40e40c650cd4c8ab857
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:9b2314f81dbcf091a6cdc72d7c6e9585ee9d9e95640a27e6bdd25e1a46dac215
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:a016e7eb7feefaadb5b27b2d76ed5d9b2f7de5fb4868c55b0cf58f1fa1eb3358
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:e24da759b99fc4e766151c7daddba8a70b49d36989bcf3bd0037f095516b7adf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:19b5863dff6e5c1a12e815bb43ce909b1cb9db4675295ea70f74b9ce9acaaf19
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:ae67b2f60d066e6062ce825591d2d9d008a0ac148aa5af6700617b6cccfbfb0a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:cc5def2224221eb55750d982089f9a318f2c079597797a6eb8331c0205ec8a82
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:fb9d97c33c8f29594c8ebdbbd706311f17d4cd7c0386424ed7c417a0a98117bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:fca097b5b0a0b8726110de9c8f92eb7df3a5c6473d12e97bbc032a9d8e70905f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:37b6cab9511a7437dbfccc793df9490a2f804ae7f7f1a5dfb16f0630f61a46aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:73512e4972f5572e3463830b4bcce25f3848d9b9538a347278ad7b7f4401e529
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:4724103abbb5111b2a072ba1b4b92bb721242bf328cc53c5b93e335abaf1217a