Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.225-debian-fips, 3.225-debian13-fips, 3.225-fips, 3.225.11-debian-fips, 3.225.11-debian13-fips, 3.225.11-fips

Index digest:

sha256:9203c270096428540077613709a8834e131407a611c4529775aad3435e49e302

Manifest digest:

sha256:04b0100579da629c87f6dc63410afd892d7f198effe6a7b497351ae95af4defd

Size

197.09 MB

Last pushed

3 days ago

Vulnerabilities

3
21
22
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:845911374a2c69e5e1ca59db52a83c44e13e84e0e14810307f9cd36f90ebf405
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:d6bf6f0a6dd32591c2d0924fb8e83317b3646426fb2add0a86fcb84630a80c05
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse-worker@sha256:30c7599ce4d9ea424af531512a52c162869b2babca0bad1288e493f0bf3ee58e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:e71b06767d4aa2ddc462aa6bb898c6cb8b2ca7d15f3ce9cc0e5207a75e107f44
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse-worker@sha256:93c80cfbc956ad47a528dbf88ad831d9bd5e8e8238be388daa82d9b6fa4526d0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:e11fc4824557cf341df2a0815ec6593ada81cf763a988d38c2e108a1afb72e03
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:1e93142ce7188bf26e14628d633d5a8bf5aaa24e6d3ab5a1f2293c151a307134
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:d483885892bf94e954fa58f00ad34adcd9cd392def4781b7ea8e7bf128b10380
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:1e8ea1e5d8806153891b010191c046e84d881693aaa31712144168a7f4adf2bd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:11163fc5c4eb46a96b9de16418638b6e4002694da65a766239bb6c431f2039ae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:16739e3507bef9cc8ce174cd303905723d9dfb14c94ebd355ec5862479dec84a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:f0b7285bfe879e38d15604e47596e9a69ef0a6d1c1a2364925a33e6e0a2bcf92
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:dd082056c13a4eb836ddbbae2f491b186f04db5acdde50dbbf1b3a034473d0d0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:949b7e47c188fa203431349e150c9c60eb35da564f4c8b38cb845b8e7c3e7dbd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:98ec1b6756e21f81db5671bc5618c5e55622d5b4ac28d26c031e1c57f112b153
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:d747aee9263a20dd3a8a12b428561c4c3396437d0011c2146c24ee264d5b4ef2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:9769722743bbb089db1c9119ab9c405fb964fb75f6f559e60df64ddd152faee3