Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.19-debian-dev, 1.19-debian13-dev, 1.19-dev, 1.19.6-debian-dev, 1.19.6-debian13-dev, 1.19.6-dev

Index digest:

sha256:63e271c667bbebf561f75664e70e87584ae3fad185f83e0802bf1e45612d6fde

Manifest digest:

sha256:595c9c9171d261bbc6f856ddc40214334d27b7539796e6f9a62f1a453904e0a7

Size

106.25 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:4bd714fc2423e78060f0080b9ec390cd7133841902d1f98510538a16f9729a78
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:4c23fbd570b5ce9995010fc87451bc5a1e9ca5818d97a2706cd525d5c0f4e064
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:b0f8e4a5a948503ed3f827963516d6b08c9e025e3a2c26230e15dc2d9470a889
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:05021536e339d3dfb33b76ec4b6348545089a5ac793bde0efd4b566b96c80836
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:a3e1ab674cd26cddcbb179ec1fa078a6cebc299cb93c6c0fe44839162fbfc3a9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:d8d642ff3096d59f841e744a397f24521b68fc0c4a03bae58d16826bd5c9b567
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:a200fa3a28a89857935fb4ef87c486aac682305d455d08fd68740420b48439b5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:8ad364888d21a7db51de6a635611115eda107984990c66b1fa05e0c34f1961fa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:50ce87863bf0c3197de39c2b42dc563420031d20416debf0af9103565dd2def4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:0aecaa45570de18c5a5c5f622d5326ff91c5f3b4dbfc0edfcc0b5c3ea7124850
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:26917336471f8b138312cf600136ddd015bfba9b8bc9ebff215b6ad8b0ebebcb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:f450e475e121a4338ffa9c96c43e4be800ebdcb38799693f17ed94f090ce6884
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:98951710a4d2d5d3fa13cb9f05b34840e24229478eca8d7dee4a2c70a28d611f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:f71dfad0552f1451fafd108f3270c333b8801d35461cce476309eeef63f9e882
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:0ad4d9c8a8d906e25e2f5ede1ab4494833c4ff57654d7f34dcb00dfb15ef85e3