Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-lein-fips, 1-debian13-lein-fips, 1-lein-fips, 1.12-debian-lein-fips, 1.12-debian13-lein-fips, 1.12-lein-fips, 1.12.6-debian-lein-fips, 1.12.6-debian13-lein-fips, 1.12.6-lein-fips

Index digest:

sha256:0cd3c277a4660b24bf306dad6c7676ada5264a5701d38437b9d44e9f89eaa035

Manifest digest:

sha256:c84c276bd1a4900a853dc3db21f760c61772b631d20673f0ed9bf8d6021f9c54

Size

113.86 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-lein-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-lein-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:c570535a40c20b34fe986267e198c9470de6a3100acefc21175d3041144d4e9e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:456385469c124b0dcaae3211aba9dd1e46fef80e781fab523cffff30ef98b348
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:06ee4eba5458bace5b5fc58a5b0354286d334b2c956096461f5856de992114f6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:08ab8601974c03403ea95e4b29fdf86100fee19216d7a7ec938c72592096f5dd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:03b95c933b933ce858269b9a137730fa71623c688e890fff12683ac7365fcd9a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:4824f26e373191ce5b206ec3a25a4472b361fc3bd1abf84dd630ab2f1261c2a8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:57e86b251f39f6a8af180e3532ea8bf64d762e37092ceabe2fcbfc14b3ebee2d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:2a80a910519e67e528fd4fcf6a0ebf0eb6a7b4b1e3701ba4ea33160546e0dc04
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:5886ee7fca45d9ebc71dd16466a2f29f47a423a011fe7aa46c947f4c67f3bc5e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:225b0caee983c76c79d7e8a203d1e314f828be799f732f884b03337ab846a330
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:98c932f91cf2ba6edde7478fc6b78098bcd9652340ae5b76a7db35a0a412e0c3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:cf113ed92d3c7e4d43cca5bc32f28c8317b3ca45eabe326d8ff4c8746517a317
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:3d8f028e8133a0c2144b4f5f3df1c36e8c902ac21689655cd2ec0e7e2babf68a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:1168907baf677c062130d103dbbb1dd2fe476c39d810a81cef354c974e85e103
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:b97974040060e9d5b187e9e47b9b4882a5aa60d02b74dc49263f09cbf58b2944
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:593d2dbfbc2056f98f9a7494234b6a95e9e623b9c00ddf18c79e9d101f5611d1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:d1f1b448ec3b8266781e65d9f4ea4622e2814f4388ac5dd907dfd2ecba877eda