Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:d9e11c24d6152b221e5b10a205a98cf319680b7d486aca4be83ec084d3efc417

Manifest digest:

sha256:4ada3e6e3406fbe095ba3843a09ce886e6bc87e30adb60436a54478e39ac1714

Size

106.49 MB

Last pushed

14 hours ago

Vulnerabilities

0
3
1
12
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:5cfdffdb24bbc85ae4062c7609a188351af9e15ca7ddb3890ef9bff3d0510552
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:6faa3f7bc1f9e58af551656956f5737497875bebe9906b331b797e5fe81bbe16
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:de64660987dcdb39388f5f6555123b6390423d01df1b792f577dea763e02997b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:d717398157047b00c4ac087562e5727146e54f8dc5dbca774d2a87fd7ac699af
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:70aeceb02cdf59155719f31baf5ac7ea0a770298913122b290a2fe05408c7d98
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:4cccc26a1518c72c0388da6267cfcdd04e969681e126702d4e30e67a42a47c13
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:82b5cddf1abde642eb0e17be241c39b231393a83acf91b63d6a65003e121c35e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:8402ed49a3fd7e1c744041a62139710f2c9f9c2df9356b4e4904d3116e8badc6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:9d93770d3196a545bb2f6754fb269e9307815affad7f60ac90fc28425014fc0e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:25f42fb155e7ea1c2704352465c634e1d11a7cb0978178a62bfd0e42f0e166a9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:c9ed8fb3baadbda8ce351e1d3279d55a3013d7c758a8c0dcea377c320c16a760
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:89ab4543cc289d7d0edb9d008e285915e9c5838972c8ef9989b80dc3e88a6aab
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:c86a88537cba0b8d545bd37c690023426b3b2297812919fa110773560425804d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:cf95d2afce931776a1d2a62c8385a151cba812eba2873b73cb0e0508a8ccd74a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:74021d8b8e198f7a35f82343db26360a74890cad63d2cf34d813bcdb43ec9ae8