Sign inSign up
LiteLLM

dhi.io/litellm

LiteLLM 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.103-debian-fips-dev, 1.103-debian13-fips-dev, 1.103-fips-dev, 1.103.2-debian-fips-dev, 1.103.2-debian13-fips-dev, 1.103.2-fips-dev

Index digest:

sha256:eb462a9460c4f494ef9322f59e3cbefd66b7ee53df9aa267be223ba198a4bf34

Manifest digest:

sha256:0f8eaf1b59fcfc3d25da2223da91529bb1e261a18e26d56fe1109cd20e42ee8a

Size

286.19 MB

Last pushed

19 hours ago

Vulnerabilities

0
7
9
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/litellm:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/litellm:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/litellm@sha256:e89d9207d079bf97e55131005297891a14facb15ea7dd7e11fda1602869fdf64
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/litellm@sha256:458b1717f137e4ad9a9d2990a6071d3f74e2f2746843cf0c6f32c5475dfa733b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/litellm@sha256:c90af455971f31106d26feb2bfdf62801151706ca5c971dbaf0e0ddbe9145007
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/litellm@sha256:1eb42ab5ec7fa4aaef266667446477c0a19d865db1cdf0342ba934471bb7ac91
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/litellm@sha256:9c7c68f229e82e410701d0d18df156a61233a1d5b62aa112019fe097e2d9c97b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/litellm@sha256:1576ac679ee56ecc5aeca6bdb2fa128d785b7b73c7dabdcc3e3bfb251bd6a279
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/litellm@sha256:4f5c00c0f6957c32782162bec2f49962cce2e8593358e7ce132563b9722afb84
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/litellm@sha256:b1db2de614681f44505f08133391250d69bbecdcb05beea32779383a1ecdd082
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/litellm@sha256:a9d5f7614c358632c9c471c7d65608fbd133d2dfa563f530a193c841f4857fa5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/litellm@sha256:ed80fbc4f52ea735bac7baefe510b16c686ba3525c929b73a58af139802108eb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/litellm@sha256:59b94f9a0fd0b57b9bb047e36d783503da522855863ed8bbf4755a57e4e76297
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/litellm@sha256:161c1672781c405a0fead0c685060473aa7b236a8abaf24693b57d8874a4a1f3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/litellm@sha256:7e7b23410ecb8fbf9387c8a1627377a78b4c7d361baf50cb389a413af339fda7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/litellm@sha256:d8e3d25dfe2c9d8a1cd3deb2a8db3a5cb73aca493bba34556b0bc10b545c683f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/litellm@sha256:cded5ab41d71bdb494f9608d5ad0a8c4416b922c724c79e12cc0c638ea5515bc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/litellm@sha256:49416c2af064b4aa4cff46e42c282461c78456b4ae87e7f011bea1270904cb2a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/litellm@sha256:220a8809161d5e921ded137c9f04a30b3b7b204446163b19cc83940f9edc9a59