Sign inSign up
Langfuse Worker

dhi.io/langfuse-worker

Langfuse Worker 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.225, 3.225-debian, 3.225-debian13, 3.225.7, 3.225.7-debian, 3.225.7-debian13

Index digest:

sha256:78cf89cfd8cd9e55cae5fb0d67d3270f0a45a254ae99bafcd4a1496383f323ce

Manifest digest:

sha256:90f792b91d2b1b13c72fee2d7cd6710edb43fbbfe05ec4e27d712c45258b2e94

Size

196.31 MB

Last pushed

3 hours ago

Vulnerabilities

2
8
9
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse-worker:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse-worker:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse-worker@sha256:f1d28107bd8fec833036e1f63ae6f4a523a331c3c6ec1b682fe1a6bac56488ff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse-worker@sha256:5e48b491f536f0c50f69fc46fdfedb9d4ba8c03012ef5bcdaa3fb564c3a9590d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse-worker@sha256:19d4b7eb42b68d829e1ddd9944cbbfb3b22077a7bbd227fa26df95e1b002bea1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse-worker@sha256:d654e13218c2d92beed1ab2f2cee53937bc741e3c898de6148c5dc41a39346e1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse-worker@sha256:af89b76f0d04757c380860eb2c125b5e62d35ca91b1050b5c5ca14ab24326dc8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse-worker@sha256:587eeb74e7f7b348862ab683c785d519ac3a3b26bdd178cceacfcde3f4a80809
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse-worker@sha256:7cbc622ae36043876391ada891690479ac3fcb9884e73665c211d2858eea9b56
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse-worker@sha256:48fc95b865b43444d4a2064821e2f6000cd6ac21c5d39ff17242e81fd053f1c4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse-worker@sha256:d231658857564b857d65bde9bf6bb66e52e8142a4a6b5ad49b397f271f80ac4e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse-worker@sha256:7ee0fc0958664bbd42cc5ce1a8abdf1ca4bcabf1c84273b84fc6190b28cc5cf4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse-worker@sha256:b31043a98d42b43bce1694858c5d15318761f64864521b2345df6ee04add921c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse-worker@sha256:4c663b597d551d94f6cf327a22319cfa12f8a7a33796438e6e744d0d2a9e7a82
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse-worker@sha256:b3ccd5758eb53278c712cb70116a9983cc09370723a33df165270a2cf95cf086
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse-worker@sha256:ee2230e8630b54e91fae8e1998bd4a8d07a25ec85b19a4b9e3ad2b811843a976
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse-worker@sha256:eed53638fb8f70d4b58528f630e205361925215f5e9009efb9b1824495d2aca8