Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.95-debian-fips-dev, 2.95-debian13-fips-dev, 2.95-fips-dev, 2.95.12-debian-fips-dev, 2.95.12-debian13-fips-dev, 2.95.12-fips-dev

Index digest:

sha256:5b680bcfbe14b4eecd73daf2f06b07c66a27d65387fd3c02c21b4f0b1aa5562f

Manifest digest:

sha256:d36cf8ca8608a954f065f805816fdcb3d2d3e76469f97c9fb00d01a2ca1accdf

Size

206.66 MB

Last pushed

4 hours ago

Vulnerabilities

4
7
8
7
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:daeed78f3da2bbaa2263686c1dbd1c0a66bb8029b917c2f7b938be0cdd44eda8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:bc07cd41218ea32e30d4970b83bf4db153956592162dc8805458b434c88607f8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse-worker@sha256:f49091078cf58e69c02f11b7d30a0255121469c84af9621798fde5bf82edbab1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:70f0a64b4413cc09aa31a9e44b9c85bb3fdc00b1f0bdbc12c9c60b8ce964bfa5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse-worker@sha256:77aa8348a5006e52ca7fe223bcdb866ffb64ece6ed5efebc11dca88fbf8238f3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:216ef989736cbe78edad933ea464255275f71d422c9b95fb7548647481d08a58
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:137fe79dfd1eac6a5d301a88892dd2ff464dc231e57a56f4cb96ac41d34fdf5c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:f9814344969849eb4a1e45a160ef527778bfafa98d0a7998d1cb03c9cb7954f9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:dad399c0a4352024099a92d7f110e22222c4eaf94558818b3ebae797d8e41815
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:c8700388447fd098409bfd605e341d9420ddaec3ea10809db4d734a2e4eceace
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:e59853dc8e58b4dda694b366b25c9f9dba781e4cb9b8ecc99ead95a03985782f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:77d3214780e9accd86cab351fc2a2cf1af982f3a2f5c3102dfa0f8a59a949ca2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:c9bb64852bab31a9aa824070d0863131f33406a8f7284e23d921ed7f7014290a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:b7bd5825257f133c79c0a52acaf725bfc0c4a3ec05de1d5c2f1d496416993b3e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:82345c56f368239ddf16ed561eab9194952db61b950aca41b99067934f5e7932
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:0c2e9185ba707fc590f1a8613b12d2b30a883b7763cd8393e713bee75541db26
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:6bdc89e013bc51f8354b7ec0a92445cb3de9ff18818c4648158c4869748caf71