Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:1072d182deee475149dbc40ca7bffb192098e41b8234459f3733917da5c5486e

Manifest digest:

sha256:9cfba87c9e81ae1a6c187c50733a065bb688bcb13c4f9218cf5639f5899dafde

Size

106.50 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:0a1ce3758db1193408707d5c4b988434eaadd97706bc1cb616b4e287916c5162
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:34f60aec0bb3da41bc97064580ff211ae29032a479a615d332d534f27dc1f0b7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:c7ed9a61e5e791a38d67aeb9aeeae11aec48cbc9d0249a8d9be9f192beb26559
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:df38e84cfe858ee55a0580edb97ba4f05bf2c3ae6ae9b3122d4df0de2d632f65
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:33780416ef1aeab4f7fa828f953180039afdba19b7eeacc5dca7e85d0108d6d1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:17d7cd56525cdb85c6ebefafc49cecb3e583a34fc76f6a03c83dcd407f549771
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:14d53f15030cc6cc42132a67743e77850c0ad4960842811926fa4b3392e59c6c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:2586ec115ee96021612cbf17537d1fe9a2ec66672bfbe8266e33233cdf613e24
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:1453bc1df611144035769814ef82ea982cf33941e1018a03ce62f987af69cbb1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:a026b28910e82dd7650a06895856f6703416272d65dd33c7ee67c46fa3a75315
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:34eee35536013ed6ca20c28c3b301c67f9446cc08c4a9cb5551207474745a03f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:f9dfad658ed3518a8e05fb3b5abbc28732c223800742fcbd71d835e124c237cc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:39553786e8ca583f04abc6aef584ee6140b4a53918ac88ea302cf4c380cee2b8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:bab93a4e35049a5f06ecb82727944fe4a8f93f33a38bc2e0ed1db05374f77238
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:7c2caab30b7b706040c243283a16c537669e7fc9a5527aa58f9ef844df1f3e48