Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:08abf835890e6e1f493a2f1a4e68ccd2f498c7a4697f52a7485c59738799e5f2

Manifest digest:

sha256:beafc0f2c651397ae72272ca7fc288e0420c3dcdb734f008d586f56a7a4c5a31

Size

106.50 MB

Last pushed

16 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:34fe40c306de96a216dacc9a577b98c83dcdbb0973f1873fde7e044efe2f5248
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:fabb9dae46c12c5300196bdb554793cdf3ebb6f1854bf056b08c4df9ce803d01
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:8f2072fdbc291636b6284cade126dca9c4f519b303cb821b8e3cde877478c853
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:378e6e3fc1edd7b0007fabed06d0a11dc146396e4fda3e455809fda14e11d91a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:1720081809f26b81e8e0ea887f2e0554ce914c4cfca7fef4d8ef09bb78c0a60b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:fc7be4168ea8c64540730c8291e51970c30561b679f9e0f0c1f52e4fc7f9dd17
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:c3b33a3ac59ef6532d52fc68501e69c5b655b98c7eeb92a6927e331433c2d589
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:ce4d281ef4f1bac420faec967a638c44ddfad31891d038a7b43fe5e86076d8f8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:8493ee0d1f0adfb4d78ea16d55620e229f8f2ab07afa2e766765871323617fda
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:e094798a416a38c03fb327afdeff8c92829605916bce4ae23c0b9e60d9433225
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:5c89f608b22c094aad47d2edb9efdaaea7312c3742ed8fb5272ef31ccb1787b5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:67c7d69e38e7829e2176ef73281f9cb938cbbe1ac3856fed47a54d927eb4533a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:8901e66761cb3004d2b5e50f9a4c9ea6494b357bff946ae2a73730ab1830f06a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:f2726fab8ef3335f6da5989882f9ca45662c346fc7570bbee82823d8cf3c9329
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:8ccb9ecd87fb619f4af5cd28416e3f0746a1186573c729f3f1c8f33bbab0940d