Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1.19-alpine-dev, 1.19-alpine3.24-dev, 1.19.6-alpine-dev, 1.19.6-alpine3.24-dev

Index digest:

sha256:88bec0265ce2253e97b77f8b80a1aa60e281878ff1fb9637f27cf09b08d52e52

Manifest digest:

sha256:1bee274fab5f33db2be04ebc5075ef49f93283c0123688bf4355429e966cfff7

Size

44.66 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:c8d2ab56f172f0e41f15f0ff4cf7fbbd183286c007c8f10be0f98ba46999dfc0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:e32cb053678b8b429597ebd34c2358e760838ebed6ea13737e8ba1461660b4c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:9e53fbd75714757d63f6433851060b3d06cd949ac92bff1f23bed5d58e2a9e4d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:c1442c58ba441cf0ffdcb6883d5d142b99b596c70bcb7d073af9c723a0d802bd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:42cc8b683b6701665dba2705a4afc75a1a7257dc2ffdbada41956ad951d7f446
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:0e37ffd4effd6e931df38d995831019ad8fb1afd170492aceeaf07d618c35130
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:3dccde2472e9420e3baa128cb031479faa89a82264012d24063d7ffd36dc2f47
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:9ee28702bd707c857458a47114aab497ecd34524acd8cf09d48972f6ed03fc9b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:b361bf70c393f2bab66f508a4b75680cc99377bd67feff32d41db89516255363
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:a34893a09394d723298cc7226a2fbaab14b1f41d979de3b708d19bb3d96bb39a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:0cac05a35549fd471a4245690b4c9e156338f5cab0d50feb9aa09227df4867a6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:fce1bfb3f35e35212d24747fa10d0c611867c739537d1e7f9043e257892e83ce
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:01c3f42563c3926e1949894b754a5e0ac2fd2c445da5bc02b681e8c9620a4a62
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:5ac79feeb5f1ec934912bf3d43830f6e6a6c9fa72d81d0ab7188c0790ce3dbb8