Sign inSign up
LiteLLM

dhi.io/litellm

LiteLLM 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.103-debian-dev, 1.103-debian13-dev, 1.103-dev, 1.103.0-debian-dev, 1.103.0-debian13-dev, 1.103.0-dev

Index digest:

sha256:d74db5899bc1ef016992e7b476574feb540fdf18e7dd89d7dc3caf560c9480e0

Manifest digest:

sha256:10c046db7af8d4c9770bf21f5feb1819260791a0be5b58fcbef706ee4b8b8345

Size

285.43 MB

Last pushed

5 hours ago

Vulnerabilities

0
7
9
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/litellm:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/litellm:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/litellm@sha256:565c95dd4b63032cbb8613ec17d0ecea9df5f1d7d141636f4331a1568bcdfc39
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/litellm@sha256:a327b023e9fef2bd1e057bceb9b1ea7e646ce5929676d59b50220d605dd5ffa4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/litellm@sha256:0f94417804cc9b4848cf82e17e4723b859c0d1eb3ccb249ee0075c7d802d145f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/litellm@sha256:92430a8c1e04a139780f549bdfbceff21ab2c7ca7cf57e42d9d5aa8dcd337e2d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/litellm@sha256:6b74983d30310b141374f338780e69b7e0a6c4ec049a699238fc7590fec7855d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/litellm@sha256:d044f05514519cd3d7dbd84d3494c39d5e7471fe4d09373df6617c221c39d33f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/litellm@sha256:a4d977ffd6318a2f0b3e7cd4d8ff9a30bcef7ca8abb430a2df0778147b3d137c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/litellm@sha256:f28ec4b5c098387c564a84547f227c6713a97838e2da78c540f2e1401b5d3f7d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/litellm@sha256:5c4ac2c5f65893ada3e8db1ff418eda1a348d89d9b17f263b50b9310856e4fd6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/litellm@sha256:c533ddb974703e8148ebb2734fb0a55726963a8fb8da577630578e1198f5e67f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/litellm@sha256:6848c7b48dfac50c9836d025792ec972ed303238440c39545e2adcc44e3e6834
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/litellm@sha256:7ae9d639d02330f61a3d15192c018f44425e002633988a25422e864780dded45
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/litellm@sha256:813034a3d0aa1345137e2b8c2d92bfd7ec158dbc5ff00e0e5a7b5cbbd8aa92f2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/litellm@sha256:8ca92d86a8f8227a85ab9356859f605b65c81de4ac62b1a8211579031ecc24ff
SPDX SBOMhttps://spdx.dev/Documentdhi.io/litellm@sha256:6eaf4374b2ddeb2aec5195c29dd38b80561f5c7b9758bbee2cca9e722f15203c