Sign inSign up
Langfuse

dhi.io/langfuse

Langfuse 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.50-debian-dev, 4.50-debian13-dev, 4.50-dev, 4.50.0-debian-dev, 4.50.0-debian13-dev, 4.50.0-dev

Index digest:

sha256:36b110a9d4c10a0b00c0708c7fb0b238a7ad93c9ae349f152ec6df00da02276f

Manifest digest:

sha256:f8db2abef0a0253c2d9ccb99105d3f28691d5a17de8e9389f6a3a65806f80298

Size

192.63 MB

Last pushed

2 hours ago

Vulnerabilities

0
2
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/langfuse:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/langfuse:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/langfuse@sha256:8c4ba9565252846bf2081c65cf0701c4717dcaa661abb7577f657f7988dde4aa
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/langfuse@sha256:3fbdb91da90bedfc34b97fbf2aa51ec804195e838052909f81f35d6b4d16a813
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/langfuse@sha256:1e1399566a9a6d30db0fedd6c6155fe089f90c7035bab6adc8d55aa6fb7d9546
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/langfuse@sha256:9d1fe893c0ba8dc9f1f571a9cf53be9c4366abc8756a5e3ade02fb54bade54da
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/langfuse@sha256:bd56bf64d0af92795101dc0a0f07148331fd2f0634247e2539dc660d95b4806b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/langfuse@sha256:a7ad9cff5c69a651d08419fa2e08349fc058fa88e98c47622886b2a9d4660b59
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/langfuse@sha256:61c119092d49167d6d53782c66b3842d3ef39cfef591c7650346a6434e4bb120
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/langfuse@sha256:cece5c06c7f60ce27a19f074914f7fc1f70473d313d444e5bedac780c80f6eb4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/langfuse@sha256:538b5f3fae3565c29c64eeffc1321e3381efbbc2ef6c8468a436fc9b97f059c6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/langfuse@sha256:6edaa4accb2fec3ce37049b22a3339d7f4c36ee6355440bcaa0428ea0d6915b2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/langfuse@sha256:5dbbed60de6c03f3e029cc57182b3d055887f3d7137ca38383e59b89f3683813
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/langfuse@sha256:8e99d0cd64fe997110dc0ddc017631fb3cb75a1bdf02f8648edf51363a08c0cb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/langfuse@sha256:4af6e92173ed3718a4ab091b319190940f64219af8c3cc39dfb254c00ee78502
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/langfuse@sha256:c853e02d214e4cf03f4f1287d82463a1f6177bb618661585b78db86c96bb49f8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/langfuse@sha256:8663ff3f69012af2c57e07097e2ad7671e16a2d346ee6057e61a3ac324bf3197