Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.16-debian-fips-dev, 4.16-debian13-fips-dev, 4.16-fips-dev, 4.16.0-debian-fips-dev, 4.16.0-debian13-fips-dev, 4.16.0-fips-dev

Index digest:

sha256:49f348df6529c303be31e9357d3225b158b8bef6e482ce0f8b08f7118ec05a0f

Manifest digest:

sha256:a9f74318c3b5c5f30e02b1798272ee636c1036f7038533e8420d2e15de638385

Size

183.18 MB

Last pushed

4 hours ago

Vulnerabilities

2
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:a57c6838a5b79d45abd968d48a1167f7a0622a12a4fddc0902d7bd16db5e522e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:45c17f002b297578732b901b182d870ca36fb8fb809d6cb3af29b95f1520a98e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:b49820ebc065ccaa9769a1a5db8d216185bcf3c00b0d189c91ff2d8beac04966
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:5b16801d7870566306b5482ce42a87334b4433c085df6231230435aafeada0c3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:837229bf261c5caf2e8496310e46a0c9a4b100656ded3eb4fbefd991879260ca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:c384e587717b61bf7cb87c0766d1bcdd9d66d700cd22b1102573bb30bc012835
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:5608b6a80719543620537d4d6e321c33fae676c25f75176403e07f4988a07cac
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:5b812aa57c77c782f1b50350fd4862ef1da558eb8b755f660c7bffab8fbf1c6d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:6329eac554e1df3558f5014af01db814c4553c050254eda36b8125cdedb608b7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:f1163fd6281252b8ded09511541af97f2bdd05b3c564125d823bf38aa134b9b6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:1b30d19d2ac3f4d0da490c35266628d7beb52dc94fd086bef4fd77d45e17070b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:856483d969911896309f3cd36dec57148dc6320394421cad32d27563184d06a2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:c6e2e86852cac2a594d9f4318378ede1e72bdb22e90d936f22c5cb73864b8f3e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:fec6a9e9888684252b28eca3f61549519c5389b3020740d243c77d74e0b6e667
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:d97d1ea5769e529d60aad6f7c40cf5a2ce08d1242815ec7390be5a2751d9f97f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:50a7abf5cef1344743fdc6ad53ac62b4e113398dca1f35af6c8ed186067e0333
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:b9813d41f67e73f0e95de5a9b2aed709495498c027cefa980c12e9af51b051d6