Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:15b5e10875615def3fbafd7738a497b982be46abc890e81c8019af26bd71ba88

Manifest digest:

sha256:d5456f4a0293781cbef8434791d401bc532096d73006f77958b9b905f7cf9f84

Size

106.49 MB

Last pushed

15 hours ago

Vulnerabilities

0
3
0
13
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:2e2ff45ec550b6da30bfdb71e01997cbb9d17ca3864465cceedb7a9d89faab34
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:5a99ab7bbe911c017a1e86f36c6c3b61e9a62646d8827151b0e06777914367aa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:3906894d326d224d3305fec104de2830d822dc6b80f6c2a84bf28951f5b830af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:03854573b1cb68199f416369e28257321039d780ad6e8e83da7192bfb03f014b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:da887257457b03b16343a98c897991df8cdd627279becfcc7c09ff9d8343dbe1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:a8f3d68406280b0fd2c6cad8221e0612b76e87cec15ca2ff221aca86ff695701
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:dc2cd0897abebe99817c736d1a8811dbb427913505cc3a9ab71a823ec3bb9dc1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:ab7294fb41a902d7123ea87cdb3345646ab362d46c4fd8e6f7c9f221d2bf85f1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:a1810096ee101b5cf77015a5270c3f711e16b2eddf77da8cafed80d629f48792
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:c9fd90e44e8532c8c058b3a110a89f168c2d85d48b65f591aaffa2bc52103569
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:cf364feab0f517b118c52313c42d3c3a84878600885f18d72bcaac7620ad22f6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:a1831d846744ff0ec6de0ddec6d379e12447542f732d1f637f2bb505e145456b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:5c86f2cc5ab8c5ba4154d1ecab08b4487192bff962cb386c7d86199b2018fb21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:c4c0b0ef8f6fbe3c14563ed98263e9d1f7681e1c903fc78361dee655e46b44cd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:20bd9fa2a3c6d2ca021d87f252e14ff4d53567523607f5f338ad17d70955b123