Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.95-debian-fips, 2.95-debian13-fips, 2.95-fips, 2.95.12-debian-fips, 2.95.12-debian13-fips, 2.95.12-fips

Index digest:

sha256:1fdb1c764e99a47729630bc1411095d6d34f668d1b82c096aed9d6d4f6ab1bc0

Manifest digest:

sha256:842ae07f61c6a0da5ccd3dbb158431dfec49c5600513a7a02a29f2e0f85cdea8

Size

97.17 MB

Last pushed

19 hours ago

Vulnerabilities

2
5
7
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:fdaa26052f06e9e62d629cd8e14661c5359e9f5921553f5f6374b9a60ba3c27b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:2fd3d1743e291b7ef3d16c13c720bb7888f26f4a5ca8457a091a802b35bb1075
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:fdb1eadb6689a53b628afd795c5176056802906b132060a93f55f993caf32d74
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:34245f66873e7e100c671da002dc26a3e5233af8e1223dad70613f9f14fede21
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:6f070b20cefcf3410783084c8aad6085eb4ca9fac51d96caffd418315deb13d5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:c8752ba02686afd3d08627cfe01f3c8038e2de3192515adeb9e5ce31e23bf76f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:7a02975a0a11cbbacf84356304df5296045526790eeaefb415fb4e1a8c7b789c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:aa9199ebb2c7653bcced733cebd0322590f849ed90c0b3b4a934b9378260a701
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:6d9fcd46b5af15d1e53976a13230897862b8700e105c15f5e88fdd4f177906de
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:2bd857d9eb32e3f54df0fefaac7ecf6903864bfa91cf81821a8c981a3e54e2c3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:a4af992a0df2b0cda32f402f3796a33cb88ae688614ed68e321243debcb02ad5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:4f8bd1bbfdd53932031587e10d0acd4b01d265b7a17368f870177942a9fdd705
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:12c8698612a07d921b88a2acb12e2cda1143448b598190fb6059107e8dccab1a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:aeb7d77ebf9d91ed838b1467b9bd0fe2ee65402fd40f243d8b900582b319cbdf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:757182f2c11940a30ec2d0c0ddde27d47a577ef2fc26e15dd651cd536dd73716
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:d899cfd64de978f02b328bc8e415bb17ffd7c430ef72403adb55da3b58b729fb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:0bf3b2cad0588ed96bc916a36c13f6ac5d7860751a2fa5867e2d67427b9a7d8f