Sign inSign up
LiteLLM

dhi.io/litellm

LiteLLM 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.103, 1.103-debian, 1.103-debian13, 1.103.3, 1.103.3-debian, 1.103.3-debian13

Index digest:

sha256:bc073b8d24f1bfe6bc8df6b5167c41f1e3667c1b9bbf9f8432b7e2d45dd82d27

Manifest digest:

sha256:820abc7fb9155a25a8ca911c5c85480c53f83c62c2b0cdc4dcd758636f64a8b2

Size

270.88 MB

Last pushed

15 hours ago

Vulnerabilities

0
7
9
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/litellm:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/litellm:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/litellm@sha256:3f85e406674b701c245a560c3c7f0ad9b1f76ed348330b0f2ce8970977f60f8c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/litellm@sha256:4ab9143d095810f5eb04d46a988be1ac46f5a0a8af3fa6903e46b04d16eb74ab
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/litellm@sha256:1fcdf46ee3b6c7d4c9568b950942da45645382431526cfd553afa65d725df6c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/litellm@sha256:ddfa8d6f282234ad7a20273dfcb720f8075cd1b9ca5eb58562a0ed5974cbdd15
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/litellm@sha256:5aa0bc2e17f6a0705043b7854c390eeb7128841527992b1abd802fbcaaf656b1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/litellm@sha256:0feb034e86992aab60b28f061cceb7ea4b3c3c08efa5d59c7727d6215034f001
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/litellm@sha256:b9869759c16ef0f3c34ef33a154a54d2fb7d29f928de0b7172f8c4a9ee3564cb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/litellm@sha256:4a4e33b149689d9ecea3f3175aff8512e6e3d7b70d132f932d4a8048ba8c726a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/litellm@sha256:f47b7dcc1b5fe11c7944ce37666e48b6c67831eb9b36edd3c7c2917fdd88afea
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/litellm@sha256:479cdd8b1a4700dd9d25b8a749175c3cb54438c06a88a06d6887356e739cd567
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/litellm@sha256:b6f41333a6939aca2c1caa9b39651d74afc918fd2bd8138f245b2a03001f1b5e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/litellm@sha256:904e6c0c9399651d784982f915e1ccf57b9118bcc5b58bdc4a06a76855c55d88
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/litellm@sha256:7709354741987572fcddcec3ddb042273b1f661c49f87e60ea7a5b47c784b204
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/litellm@sha256:208e668ab93079a47636d5a0186b6b024b9a98eb81dabf1dabd3b2d6a5cc5009
SPDX SBOMhttps://spdx.dev/Documentdhi.io/litellm@sha256:f9d69db895a02f1499aeb7c48ea286a07b52baa80b523835a4978fd6032cbb64