Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x

CIS
linux/amd64
alpine 3.24
Tags:

1.19-alpine, 1.19-alpine3.24, 1.19.6-alpine, 1.19.6-alpine3.24

Index digest:

sha256:a17ea1ea70847417a412e75d6c10413e44b574e91b27a5ac2791b47249d49801

Manifest digest:

sha256:032f107464115be3a458baabc65f6243b07cc4095ccab70f411add11df2c52ec

Size

43.48 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:735210d90bae31e0093d791bb64ac2228a0a6edc484f30b6c7665637bd3cd491
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:d43d5285dbd012df3cbb3ec7b57009105fd4d280310adbb185c46e7d0702a503
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:671fbb8ea50e51972fbb65dfa10f7c5d1fc2b7c5dfb33982308c51c3a2cc4b8f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:dfb81d8a54e67b2930361912a3b86344114c6b53b10cdf27d083af0febfed331
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:4ca9668b394ac6393da013d2d5f59d84558ae4442ebc8abc0a8ed047707f9ca4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:42f79954ebe980351df1ca079b3318fd8de9c6b107989b179248e1dae05b45c5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:5f80e467dbda03025a7acaada747a20185f0aea55c660c259272503ab4be1d33
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:98f4cad2a8528eb176ac78645e7a2c03fdadbe4148927f3209e455f90049dd40
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:c473799b2495f95a829e88abd71999429f56a81f16699faa29e42e487e133ac9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:1f6d2c3f88d9a9e33da880409ff66e002744136745f504302eab1592d0b8679e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:5afdd6a8989fef9bbec395feac731a72d85902281e94a6e0fcb8bdeb033da9ef
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:d47c15200fac408d2aa4aac603b4ad4efc14d2eca79afd62a7d39c937f305b04
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:6aa003f46302972eac0cfb3209e01f194446a14c805a64fe584a0fc12b26ed8a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:5b156abdf9604b2a6a58000987a97705132ea3e54bda4a6956428edfcf685de9