Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein)

CIS
linux/amd64
debian 13
Tags:

1-debian-lein, 1-debian13-lein, 1-lein, 1.12-debian-lein, 1.12-debian13-lein, 1.12-lein, 1.12.6-debian-lein, 1.12.6-debian13-lein, 1.12.6-lein

Index digest:

sha256:7bbe85c9d44492c8e6a3f008dd3b180db2eaf9189feb83165e3640396507b407

Manifest digest:

sha256:04296d046b12ef0ce980e09b2bf58f1ba128669e4be8880afd95b19dff3b5d5b

Size

102.64 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-lein

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-lein --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:47afb742e586415c8faea09579dae4a39e6271a9854d48142549c8d66d7a1de5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:5e4a68fe32f21be3453a3dd5c852c90318838c744e0330eb15f238dacc4ae6c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:bbb1939f7f39919cc4314c3b9b6b363e8bcdb9b9c9541dc4d5aaf697026cfbc8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:8786f2463af4428790fa02dda8b3ac998866370fedcd4ed985881de245137070
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:a080128a61ab16da8e7caaf4f143e75f71f79905244e832920e72bdc880cce3d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:313f96fbae5b5f2ab06b76a13dbe6358bcaa5c0d4ee7413c98a41e60f1f253d8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:52491822a7b04c05e47c3d45f70822a0e4dc0558f806b545d43e9061ee46c7fe
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:a795f82292d64ff608fcf2dece6ed70cce58cef66b6ae1d926ade26b17e6a5aa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:7d90d9c5352a36a71e10c9a4f6e9ced0b18a393e0b305f99726514a851b1f4f5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:4eeedd3e1563d9983d1a57a2bc72b33213dd75ed3c0efd02bc45ca1e72314279
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:6b0fdfb4aebbc9015d19edc662bf897b077478f15415fbdfcd8bf9ca31bdd2f9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:8464f622757fa718ccb673cf24665ef49e1e3b012e967fb7cb66120465b7d1e6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:f5437f7c804266f59cb48f16217813ea6cbf63d1424dbe11fda3bc51656c8825
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:ce542685b70a1e40e7ede5d8ce3f406378f66d4e2f08ca1529bfa99931f69198
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:2acb3f076fcd72a8aead26fe2ccba5a79f1442b7e594a3b7fb223121ae475ae8