Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.225-debian-fips-dev, 3.225-debian13-fips-dev, 3.225-fips-dev, 3.225.11-debian-fips-dev, 3.225.11-debian13-fips-dev, 3.225.11-fips-dev

Index digest:

sha256:af939514dff403404d2cccb983a516d9a554d749832c4c863280a0ec8f1ec6b8

Manifest digest:

sha256:9c5f53b7522cf746a62098ac006f653c7d22d771d9bdb8a8fe66eec6cedfdd3f

Size

150.01 MB

Last pushed

16 hours ago

Vulnerabilities

2
4
10
11
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:3ecaff4edd70baeb1842bc2974271a75e8d51d97fbbf585f0018fbdae0b95edf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:68e0bf6921446eb39b502e0031216c2972cfce36a3110c99921e989ed1a4a6a0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:f88020be7ffb4426feac7607f6a40699d51b08b5028d5673334c941bf1190f4b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:fa886899f9c89f956c0f9c6362d34383f3d194b9e4f4c5f4bb95f6c104717cbd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:b6fa91300c008427f0e18e67682079e9fe3350e736de2eced8a9b0150cc97efa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:b0b36bb3f710567f12c499e0399df99f73a1d544efdb5232a7f49fcdd346e41e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:2bca85a4f9360cac7fb2b7c8e4b7796f0753939e3f1f2cef17455091bf01016b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:8f17258026e47554a2a307fd408495a0c04892f0064f82478466c9a186651bc5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:ead70247cc54d38157a85b88523109a5fb02edc4fd2d9e4ca81f73b290f12282
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:b95c478790b4dec398eca988c109306dc8e08ef68a71f333a3b1cd579a3544f8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:e1e9540e5bc8309f9ed94b7cd0b3a9db13218d04896bf63e72b894d178eda721
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:9b2fab521b013f4761386c8353f0826fa38b577172e06d0e1d12c9229e4b56e1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:174c5f035e7a2abe340c560d058d61e76cafe3897d861dab38ac576a1ab1e8ec
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:4800dbe0ef11169ef0b62fa273f97df8f124c2c9941c77284f2d6118ef37655e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:b20dc64bf4e5ad303f6439bb1efee9234e9eb63c74e746e8b5d842b6d4383e4a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:ffdd8bfeb097accedee27ce629e734866866269c09c3a8e15f2241659e5f9c55
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:54726f9c42fea90a6685689a852bbd03a5fa601d123c598d8a5400fe7a9216d3