Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.225, 3.225-debian, 3.225-debian13, 3.225.10, 3.225.10-debian, 3.225.10-debian13

Index digest:

sha256:1053c77794f4847a55df7c392c072d3d0faa97c5f220a0efd20f440c7025dcda

Manifest digest:

sha256:8f5d4a0ce2ef8bf7b59e9a0e530d3407ab501a68444dbf5fd0672b544db4fd76

Size

196.32 MB

Last pushed

15 hours ago

Vulnerabilities

2
8
9
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:0d442938651a97e0ed04f2b4e5e036a8d7754a9b2f062e3c6ef032d6823998d2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:f5a0a34824ce355105bc215edbe353adeff65c5be4cdd8d16461ebe8ae900440
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:05a419481dd0aa689c437585e13a542272a16da7b4b70a09c929a53d3baf4a4e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:1010931100e757ad55c3ccc5b92cb472027d74e2e9e4c8ed0cbc19cdc5b8fa4f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:53fc60cdb4ef273970eda284624e29c85104c738cef0e5f0ccb04ddbe0e51f76
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:1f898399ad5e521171008d14c316dedd81922f4ed83ec276c9761dd5db444812
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:ccb79f79e93fc98f48dd0096d216ac5951bd07af5869ed5dba50b379d2015ac5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:d529837a7cb8f7bdcef505b6f722ea83691199186aa21d98d142c14012ddd71a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:87a3039421b6f1853eec4aa25e6e64a5d88b878f05c4f68b4b2d458410a21d05
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:9b9742cdd25758d70eb84faf008c3d57ee44ca82ea334eacf3f896ea131af556
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:f0c317650fac24f6692c754b8df0810e721dd54e6e11f1898c2e81a06282fa88
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:549f4f74c17b16bb67dacfa0eb7c934317ad9acafd182e4bbb4ac2b36aee144a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:37c789488919699524b35b01edaaca1e1fbf5e59afb99a04f72d1d6e4110d825
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:c311ffa57d6d241c648ced600164c769a45f67b77df909ed3deb8ee42732c0ee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:0749829d7f80bfca56908a83670ddc3bcef012bc06792b74b5c9079c83b92bfe