dhi.io/elixir
1, 1-debian, 1-debian13, 1.20, 1.20-debian, 1.20-debian13, 1.20.4, 1.20.4-debian, 1.20.4-debian13
sha256:12e39898cb38a576f1a7fbf09c9d0a1ade9660230ca9dd8ca6a9c85cefca2af2
Manifest digest:sha256:dc2b1cc51fc7897f2fffd6be5505878f75d8d3ea483f343eb912d04e70df2c96
Size
93.74 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:769c6c6c6c6181302bc71f939cdb6084d65552a9a1c6271862ba9c3b14a7f6af |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:96ac2ed5002bf68ff39ea5b34e768e814d390df6bf81d96f07cba929f19d5ca8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:5bf9f46317ceba0660342506510f85aea19db37df41c4485f94c0c9d4d578709 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:f9c0861b39122eb7695115b4b27d43156bc16f7fec4382f298690b6756a52734 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/elixir@sha256:94772663b81361cbbb2fa4551655e9542371b08d186859ac54f86717f17a42a9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:59b5fca9204be957ffd841b2f52c576a6f32020f473ca959b3aede965474a77a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:43fca40a0008549388d45b8b6e2ddc70249ae0cc1d2410ac9fed198babefd8ee |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:93fe9ee328b194ecabd50dafd936d9196d8e64bd0cd103b7642becb1e9152e66 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:966bf514ade3f3c3e10629d1f719eec3aa2c3ce6cef1428ae8fe1a1cada9f371 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:aebb72796d5ce111ad6f0758a603d0fe111becb9ab56798ea9afa7544222dc89 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:8f582c8d8f11ce86857c4e93fdf504edcc811b2d6cb0b0dce65425f59fff7a42 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:987d0e4a8aa74584f454f8f0433970602fad34338eb1bf01b2e1bfaf0fede5c4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:c88755a55fcb58a3b8a353f411fb2278cfe592477b8f2032eefb0c3b4574ecc9 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:f7f0d9aa646b54702384a32be6f33f460cc6e461edaa77017cd52c390daf95ae |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:80074f8f0b0a8c2352e23c393e8939edecd9f65056eeda7f22e840920680e705 |