Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1.19-alpine-dev, 1.19-alpine3.24-dev, 1.19.6-alpine-dev, 1.19.6-alpine3.24-dev

Index digest:

sha256:ec55f506193095b3451a9fdeda85d8a74d168bf4a8d3c45e7d950c32272ec142

Manifest digest:

sha256:15d7f06b5542be958884017b9d16df33d4112814f03301f4fed0505dd15871ce

Size

44.66 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:3d62bc2d1e6ccc54b2099b7dd239c43a38467d96c331b2f9c764f8efada4e86c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:a39edcc226669229662ebfedb027e006936a5b48a4c727413264426c669c4c75
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:1d22bee4345c95188e5bdfde1245079f32095c4833f28bb6948b024e7f3a350e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:4ad1214632ceec84bd99815141acd647afc8e4d59c755004df1ec088aa203772
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:63a6c28922b60bb957c88e2e073bd1cb06a4862bc139fb271ffcb35e55629231
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:290c4351e5954c98c79cc3ccac3541ed09dcc7671b2669234abba3b2b51b5ac0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:964b3364d81cd655fa151d31e522e35849557cabbc6e47078993930da3d6777f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:67cc54331ed057ff7f999d689785c8e6af04074e943f21e75b81455ac4f7d011
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:8be270d8a4b5d070beffaaf38d6034e770868e31557b7695c6e8c32e8a4add2d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:365d3a0de4e4b6281a218e8ff7089c1f86045b595f44dcd4e57046fb673bd2b0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:eb341b8bca2515d7f50e4f5aa641792b8fd14763cfa0c3068f6c8bda18925243
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:3580f6b0f7aea684d0bde054fe9ece98c7d9b76baf5b3945ba143241f499e9d9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:7d0a16285a82735365abecac6c5dcfe0a432688fc5757a2f0301e41227a16561
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:2faed17269d4c05d3a89f0ebca30a1136d8455424a259beeb4259486f1330cfb