dhi.io/elixir
1-debian-dev, 1-debian13-dev, 1-dev, 1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev
sha256:18202c671ec1a45f129bff3c846aa6a9cfa0f8bbfabfdc04aea5bb7b18fb926e
Manifest digest:sha256:daa28935a1024200b1908b4bf96bafb2d974830b8ff57f06bedc31c8a6d5e649
Size
106.51 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:d55808f6b97992fb2ddfe239798058fb522e1d96bf56c1e359115525214fc67a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:eb6514d63113767d720c347eeefa6b701033a8422903d14c1f6e6b8a66e275ac |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:1775fa14c0bdc671740c081df38ff88ba4de0df85a940f3e16263b7a6d10a5c8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:9fbfdf1381368c191ae8d696ee37f0755ab13a74da36c1b007712ef0ab2314ce |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/elixir@sha256:4f8343287f394aa6c884d98b2d777dd4bac5403a762f082cb7a9539d7fa598af |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:e2b2d571e1d3a643de2a5c73c225f04aa232d4d30fb8a5a349a6a2c77adeded6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:96267a7d59893a60c817e1bbc5d2d1bd42e4b4f3440ad171d3c93cb1f64e6b25 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:ddd4f00c3160bff9c106c34f11839a677078c50e6be696fca4a4d1914d7d7f54 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:4d1e09101cc26b2026f2d485dbcc67705c53dde33b9abb41a2769ea93120b836 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:7ad17abf0d56a35c374d67027f536246618b2921a7eeb4f777dc88380d564f6f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:651933bdf342b2c78511af42a60f3d485c635ee5eff0c936ec1827bdbd744580 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:c551b89d21a26edc427e65751d0d94b30b69e842546657ccdb0183368533c090 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:53f6711ba6a4dcaf151b9bfa0c9921d614d93fd6266864a613c45161f963508b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:b8b31cfd0ef0dd98095c59e3b4b5c7a87071558824218ebfbb0b5aa89703859a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:3690c436a8b815252f224d685faf56fdc3294db45ea72c5eb0858952836b28a9 |