Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.95-debian-fips, 2.95-debian13-fips, 2.95-fips, 2.95.12-debian-fips, 2.95.12-debian13-fips, 2.95.12-fips

Index digest:

sha256:23a9f82094e4e83b2a09a48d4cbed3561336274e84be3608ec24f5229a66c965

Manifest digest:

sha256:94deb6f62bc92e4e87e0096cb8610e653a2ef59f5098cfb4bf9960229842abfe

Size

97.17 MB

Last pushed

15 hours ago

Vulnerabilities

2
5
6
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:4cf919dddeaa47dd24cab1c0ae05776856dab97dae8df755924d4c41f7189235
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:f24df0f72139964c181ed5fb087ad4518699a37a67f367cad74f187a771b9fa9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/langfuse@sha256:73204491dd321e0d2e601299a1be5de344e7c9989cae12d424edc46b34eed0ac
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:90fbdf8ae589e92df874cf0398de139c05dbd8c7c55368271885a8d68a24a7ca
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/langfuse@sha256:41725bf0e338386e2e8b7204d09f02b0f40dba4692d0236db65a1609653c6c88
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:ca64016e65de8019a62b98ce7402f0e8cf747f51a9b9680127ddb2f1d8cf2627
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:baeeadfe0e881f470e19797e3dc48195d9cf34ac59c46d0da2c488f5905c402a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:9a504bf118d1dc0b76853cc46ac016cc646b2e184cad360ed08e938043b6c88e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:5cbbd5336a635f3202c570b7c182fe64485517f9626790e8aed0ec48d3427ced
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:18aec7a3cf430e8f528a5213c03f2f98196d1ade523de2580dcf3b64d8f75167
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:cd3a8c76aa24b648d96179bf603b857640e40c939c41e27778c73e4acdbef93f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:0f9c27a3af808ed51049060633273eb6542b52e24db6915071be039d9e3e93c6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:9e00bce7f3fb5aa9236ecb1338d57adcca0874960c4dc4260f253632b2e8f23d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:fc20e556846a3708c1d882c356fc38b832166e11589b323da4af87bdb80b3bdd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:45375323e76b85f89aa0a1a4ebd97ff40e873f935f771fd3b976c2949595d022
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:f03752ec3dc70a459c6d0bf8f0d0ecd68176f1e5983d32ad1258a9bd46f9b6a1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:ff003b2e97954a767f8b921dd56308179d04a77129824a3952204636b1bdf04a