Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.20.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine-dev, 1-alpine3.24-dev, 1.20-alpine-dev, 1.20-alpine3.24-dev, 1.20.4-alpine-dev, 1.20.4-alpine3.24-dev

Index digest:

sha256:71911b01df69b3861e42b10eda5c58187b883b774a9359525e4d8afb88e97393

Manifest digest:

sha256:2ab5ab0783917809616bb921c37528a66f4cb810bd20551af0c1f905bd462a61

Size

44.95 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:d65d8dd878824621a69ec37601a93d0c1c0e6cf6d3db53c90d91a94f97c9b1ef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:347111f6b6124c169c11b5d3bed27bc9df6c763d92fe73bd51aceb7e3cfdcf88
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:43fff04ff82c7b4bf07dfe9f8ee401b60d7ef8ef3c319647a7874a7bd668330c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:b4875dd7b59c336cf6576fa1a16e454e5370f06fb205c929e7b6e9e6ea8695af
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:459c37e3461a6208025ec78f1a11f2457d4f205578b7110d2d878644d0468a77
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:517642767e8f71b705ab05e252eb6a6373171b85bf27ac633c520a311a96fe8d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:c725a2447d08fc23117237b153047474c93ca6b650c9c124905ce026251c21d1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:5837515331ab2f0a1cf9b233caf49f4f3f31260949268273e70da9aaafac89bc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:b0dd35fb167190bb761fdace8b9539f24e2d7ccb4d576bec6c1955b02a5642b9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:7b67136bca6b3c2b58cd640cea4b45b6897f131bfadf93dd2988ccbd42a14ad5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:19a36f002021fb7cfcd5d3c38da1f9574d1b6b7e3e075cf91f931be9c59dfd0b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:089ee1d4ad7957e89700acbf73890696546b7c642960fc3a70a3d1d1ad50e546
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:ab935deb40930d28b8dffbd9f6d871dc9780978663dd1b161db0b346519eb9c7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:f9b58249522b4d229385c48e671881b6e28c7d63815c8b734b2996bcc493af7c