Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.225-debian-fips, 3.225-debian13-fips, 3.225-fips, 3.225.8-debian-fips, 3.225.8-debian13-fips, 3.225.8-fips

Index digest:

sha256:86a21c0cb01101be6f410013c3d6dbb798fdad3f233b7b45504a1c5cf370ccf6

Manifest digest:

sha256:c5fd81ca7c08eeb29b677daffdbab958e95e5166a165eb8b2c9ba5c0d7a40ce9

Size

206.11 MB

Last pushed

6 hours ago

Vulnerabilities

3
9
9
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:d713766b01358eb69fd85d1c64c48563c0c721fb0ccf2f70722e55c3e2ffe406
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:ae15090ffa4822342b24e4506e6f412045f06da218e930674d79351733fa9bfb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse-worker@sha256:a6d64fd356561e0155bd7f2b2ced58e55a598fd4009ec62a3e371f61b3610fa7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:5e1c343b86a8e5913d6b9db71157ba777f6b992d9099aace801724f20cd9013c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse-worker@sha256:ed0432e762bcd8a124df95a126d80c1d346019ddc4a9be42b2a91d362137d400
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:6ddeabe7654b594b7e3f1e9c0ec9028fbad814e5cce867bda3b86b4bd2bab09d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:afa979b9c8a428058e90b3d1ac838aace44e23e50b0cb48e8ed033e8e50fe41c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:de4c779c14f8b9fff391073887b20715ac1b071273be4fe769677b3f99d6b670
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:8675fd86f14b5392837e485eb7969d66718e3ce753696eba0820b7b898afee26
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:9f6075f322f4e59e454ed83f60287846290530667d99b83305d200db72837ade
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:6c1cf6fe974cf7310823df0077f047472abc82ae8497dd9c0fd3c6d60dd5d609
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:c7d639cef80ac65b32d05f5a2b12fd8725126263413c5882b4df624778e89210
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:fc2a787c181bdd8cb1e93cfc48396b2da477efb925bcd7732fb85df142c61dce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:c31ee9ee0d9da2e1b6003b067600ca0ace49ce24dd60ff96a4cc006712c8521e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:391691d2ff4f08d3dda785c15d94a376ffcd98e7813712d044ad77b9854ce970
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:dfa0450977dc4abb021a8d27d0f9d4cad808cb16293d3c469b18754ac77debe6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:dd8def7cce4bdf252dd894338b8e19648a37e555e963a6eab3e83d3155014a38