Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.225, 3.225-debian, 3.225-debian13, 3.225.8, 3.225.8-debian, 3.225.8-debian13

Index digest:

sha256:bbbb9826aae470c9f7d9da8f1a11730403065b0617393316b8427d7589f98cca

Manifest digest:

sha256:1bc3b64d508022fb924b45ff37af6bc73d54c415e95edfadcab68e1fa740f2dc

Size

196.31 MB

Last pushed

22 hours ago

Vulnerabilities

2
8
9
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:7f08912b074368f51753ca3bc15e926e2431518232a64dd1906c596bd1b9aaee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:72e522faeb2713609426329d1cfb3971fa6d4f9f723326fb11b75ad40bfc2915
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:3edcf4c42c326366e15eb230b86120206fc03e86b525650ec4c8e0092123a146
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:0d726e7a35c1db5f130cdfc589079b66f6f617c30974c76b996aebe6740dbab3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:3e50e1c0269700bd9df14f54749f72fb3ba7cf98c10f75705e61e4b4a8aca85c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:cccda716df14c46af5a00a5f2ecf1fb20f1f94c8a2ea7aef4b6970337b11aa54
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:c0abc3f351590aa3a5d3d2baeb15b901598bb534a78244290d7fc7f5162dc1c9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:aff2c626c9cee906c4e92c3bb727ab319f769ebda10711d497e9250abbe3bf60
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:e2070557f44b3f49027bf6a2d7703a97b415295d51b809c0728e3e639af93096
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:60769e7e1707de9c93c5011a7928d49cbe388d0acffff39e04d771fce4eb4f36
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:bf8e7f98128a1e400a8ffabe8f61f44ec91e59dda88d88a29af77c42232e16a3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:b9cfafa213fd856b69e1676d93a9c4403905b4eaec13e7224fef2920d5a9a41d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:93260aa675473d74c814d13b8e6d6e3926f7181b3230a72b4d915c2fae88544a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:34d0af043a150f6bc74e619c799caf690a3c5bb71097416f30d3036dbc20fbb5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:9366565efba1eaff487a94b1957179843da45909186cef84467b6fe666fdca92