Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.225, 3.225-debian, 3.225-debian13, 3.225.7, 3.225.7-debian, 3.225.7-debian13

Index digest:

sha256:584e43a234b85eec0d0cb3dcd3fae5c236a5d792c3cf9b356cde2cf9a5d39028

Manifest digest:

sha256:5211d73f9044a409915816d169838ca72665b8059c6d026424cd0a8c25001e0e

Size

196.31 MB

Last pushed

13 hours ago

Vulnerabilities

2
8
9
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:fbfd2d81634099238c35294d15b461314e8f7d13566b98eb84b14b74f105165f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:9c68271ac46380edb50ce5be2fc36ff7c01b19b4e4e52a6d48850adae60c4600
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:1fbefd8522f652b736f6efb58dc9543e8ef7fb08027981b2d7373c9289404e5e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:0c89c745f2590bed13da1957f2797dd625d7804a5734d3e8b62fd998b6e8ad99
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:8c7feda5b6cf07bda85f63f83043328766dfa7a56ff21b28302b0a4167320b80
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:ae95704d56a2657aa00c7a8afafcc286c54b88ae641ba8db7b91951f46e80117
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:bc88ca96cc885aac47970371ead239f06db136089062e28fb8802aeffb405457
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:fa0b5e850432162ae37fb3d9d4d6c7e1de6c4544db42da550b23ba19395da231
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:be9010201cd4e8fff0c1fb46569956f295dca13c0c7e92b286437430967ac7cc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:c1fb8dd2bd9412de8c338bf597a0af6ae040b7cc9b4e1c2e6b480e1736a44b4d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:d3c81eaba782e826726c97da58eb046ce55d58da35463c7091e9ea511477c932
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:1b8967f0f7228abcc7a88e654abfbc5c4818947484f79293eb7103ef2ee13245
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:e3bb6b3ac0ec6ee61d247fc80a254da9489d2d56bee1b4cda676efb118ed6915
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:622a5164d8fbb04d2c4d47b965f37bec591c3e568a3bbfaada6207e4aa12b990
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:5090d7e2942423c39414faf8ada6ddc307f8c4afcc2ec47ee0fe0d6a07105d56