Sign inSign up
LiteLLM

dhi.io/litellm

LiteLLM 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.103-debian-fips, 1.103-debian13-fips, 1.103-fips, 1.103.3-debian-fips, 1.103.3-debian13-fips, 1.103.3-fips

Index digest:

sha256:6de6e0d208beb036fe5469934a4dc76af187abebf55881dacdf8429ed9ebc8b0

Manifest digest:

sha256:f8ed0f7d7ac8b8cb448a57b8b2a4de6c3276ef82f6a9efc51a9e6223003d7c81

Size

271.75 MB

Last pushed

5 hours ago

Vulnerabilities

0
6
7
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/litellm:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/litellm:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/litellm@sha256:6703552d2ff13683d2e18f2cab11ac1ff4bd75287c0a4f1d8618a7d48faa1143
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/litellm@sha256:e0cfd7a632071735e94823e46efb1ae6e66b2b74bfa6fdc0055aff7233dd95c0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/litellm@sha256:7ba7ccb405ac10069feba72972e97799711fd15b07c1671e904c6949c7f0684b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/litellm@sha256:943d9bf7f0e4264dfbb0ae87858fca5b065560374ee5d2094afc7c8b2e0782ce
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/litellm@sha256:b051ff208e270736b78d000405a61a8dae12c590df15b24b4f890bd449ca530a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/litellm@sha256:96aa393fcc9b4dc323e14f53e07098305543848390ee25e86626524545a729c4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/litellm@sha256:15207bbdabbdae2a0888321c331e289b2d97f226b7baabda3783eae280aebdfe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/litellm@sha256:3e85f2c162a0d6f1bbeb3e476be06e01907375ae8be824c9d230a01c16463628
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/litellm@sha256:9e56743d0d395425a3153b37835d87b102d6c42d27a16a0afec5ae2b9127353f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/litellm@sha256:19ee4be1c703bda6dad283e913c81ed8ef4e457a73b110ad6439f5f821c77df2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/litellm@sha256:0a59aa09f9c260a18df06d724b06a08a1b3a30188df29a58a156bf11bd0878da
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/litellm@sha256:e2fa31adf1dc0636a6659fcc7a43b7e5b64fc0ae52af3171e9562c1ca0850e3f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/litellm@sha256:9d664397fb04721b5425a76efd7e1b745f66f1f988d39c0279cee00f1ed0ee04
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/litellm@sha256:ba2b0b711e581d61a81278451a672bf054a17706351c81b377fb72f204151051
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/litellm@sha256:fb00b1df326aef1a83d47f2a665a58f4550195647adccdda5a7b6fd68deb1ba9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/litellm@sha256:00cb39d664ac761deb939f902d76a73a0f15601672e86bf67160fd05699aede6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/litellm@sha256:435a72f8acfd88925c842f968fe944c9372e72cc5713aacf4818f19f1e4ecfaf