Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.225-debian-fips-dev, 3.225-debian13-fips-dev, 3.225-fips-dev, 3.225.8-debian-fips-dev, 3.225.8-debian13-fips-dev, 3.225.8-fips-dev

Index digest:

sha256:7f6a6a4b3b872c71221fd31551302eeec46ce8b3374bd0c608ce4c177f464e55

Manifest digest:

sha256:543f605707c83efa76a310d1c9f45de241e06127a384e87a73f1ebc45c190ca0

Size

150.19 MB

Last pushed

21 hours ago

Vulnerabilities

2
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:52c5f7650c93b181675ee135a8c9ffa89750d3ebb22baf81c6406ce2c79e8cda
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:d1e24cbf390f50c5bca813a46bf49890c265281de7d4e58d1f27774d576a7534
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:d5c145c1fecabba92e3e41e77c7d232c253fe08ce23cd10b47982622e0d86d87
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:2813b70e58eb41042296cacab09be69f9edf71bf356391148eb438a2c6bb70aa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:a90883df06cddc0c0898c0a880f00eb14603e227d5feba248147959283cbd523
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:471fd87d706497af18811686cabd5ac7d277f9703bc59597e9e9c923ced8928f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:cefacf059e9e8fc20b41cae239477eae566a3235ce5fe12011df66664165a323
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:dde1642906627edaaea78dc78168e4dd0d04e16c6b881a37215fe9a830f2186c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:8623fc8373d47b26669e30dd68d64d97ead171ce202a49a8a9295101078e8dca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:bff8f6f9a3e5d362b1dac1bcf245645b7418f6f99d1e3f2d6e565cb3ef2cd790
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:a75cd604e2ebd4a08beeed29934c7d53b06d1d60a5b208798f2fa624e6ff385c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:c351c4cdb7a482fee9869352d7253e5be6ae34a1baf1a785975aa8aae16d46c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:3b377c726f45a82cd917484e25f0525c54054a1d58838356fcb3d011e7f9a9c0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:15b75e0760d2006fdadf687c13eb62689727485b211ebd9d2dbc13c38aa94d58
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:f20be6b6091a7390051f64fe21dd77877dd48deafa9939ea969a4fc27424d1b0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:2d26284a29c5e6668f30367d0690fa765e2faa2918845afdc60e7c76b811e68e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:8a042bd3d51b837fec4b14a4ba9d3140e4f0285fe56bad93efd66d1c8748110c