Sign inSign up
LiteLLM

dhi.io/litellm

LiteLLM 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.103, 1.103-debian, 1.103-debian13, 1.103.3, 1.103.3-debian, 1.103.3-debian13

Index digest:

sha256:dee64908deb3dd25d4514eaf7dd05c33f4c2d5e5c2b2a4737ff559b992262cf8

Manifest digest:

sha256:ead4c299f1a11601843cb9125670678a7caa2e927aec43a18b86ef8e9912e488

Size

270.89 MB

Last pushed

13 hours ago

Vulnerabilities

0
6
7
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/litellm:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/litellm:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/litellm@sha256:085be11420c07e60f228c706660f89fe49bb09c4dfe9879b92e0eb8c4b2d7b47
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/litellm@sha256:4ccf04d0fd482d39588b80b5a45910b28bb07776166d0545aaaeb7cc8a8a4c6e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/litellm@sha256:bc5760c9f1b4987d17cfb9775b660b54be9307672d9dd0ac7fab1255a2cbab2d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/litellm@sha256:fac05f86ca07d393765960ad8d97183e76d81151ea93247288f6394f8c6dec26
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/litellm@sha256:f2b6100ebc96cf80bca41a807cd77a8a0151e5dce5f78c11c3a41554fcb8284a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/litellm@sha256:fab610e2ab718f9b77e2310552de8ae584d6a5ba392522f9f3a90ac2b364fa5e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/litellm@sha256:2dae5e8dec0fff1a29ca5b2339e66de2267702fab467b4d034dc95bf53efb9e5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/litellm@sha256:d0e56f9042478a68a778da246eea4554262fd4c81ff40c9fac54dccbe474b3eb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/litellm@sha256:5f6880d3d0c31e92f55bf188c4c9bbfcc08dc0b6b8a8b6b5a06ec6e0d333734c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/litellm@sha256:2ef5b49d7cd73f844d0c31f5abc46842c09815abee9ed941d47bf949f2c277f7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/litellm@sha256:fa46532822042a6e63b1f1fb0d6e669978db411810241bdcec1b48b80e3a600a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/litellm@sha256:55461e40cf575dba722527159740a0cc8be82b9f501ea47c2c24957e1de20197
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/litellm@sha256:56287ac776032d4a8d9c8167c3d0e8e5bed29941275db0a7aeb57f536174c0b1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/litellm@sha256:fa42e37a01636134de345c85519b8113cc22ef49dd9c3747a6d30321af6cc088
SPDX SBOMhttps://spdx.dev/Documentdhi.io/litellm@sha256:94b613ba150d045b17aa296ef32e4bbe24ff9c4588a50d63a428fa02acbcf661