Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-tools-deps-fips, 1-debian13-tools-deps-fips, 1-tools-deps-fips, 1.12-debian-tools-deps-fips, 1.12-debian13-tools-deps-fips, 1.12-tools-deps-fips, 1.12.6-debian-tools-deps-fips, 1.12.6-debian13-tools-deps-fips, 1.12.6-tools-deps-fips

Index digest:

sha256:11af555eaf99eee11514473d9d1edcc37a1766f8ac3e3b99059c9b8dc1a7ae87

Manifest digest:

sha256:32022d4e11c090a1180e8e2037fe8c170dd3d8e70e21a3ba6fba8fe344fd4efd

Size

95.63 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:befe796c78861ca3f2b1f0b99c0a20241d989106cc2c9470d81b8b5e4dcaa194
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:675507040701448cb1b334c8d6227f11e54436c447b4c9f95cfafed2ffe029ee
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:ccc7757eea2f27be10d578f55576ad2a7dc6780d4ac499b9ad7d9309cf0b0308
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:b28b3773320760b24cff8b0daf63b2b02d1ad3c21859746c7d0d8829c899063d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:afbc9c212e9520a89cdcfa150ded1cafc36c0faa2fd4f0ef43d980ae1f832a47
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:0ad514e89bcaf3d552d54aa98a6952e2bc780091ade4b26d42173536512aa536
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:facd4dcf7e546e914f75eae4c9a045dbe3e39a09615bf878c4c9177766235a4a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:5eb8eec6334109ee029f4b243bd242466510c30345c361016d28e52b8e4f2cee
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:bf65179b47a6a2b1181959ae00903ff6781240f4046fee38d1cb2a5cab0663d4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:c550f680849f35f1ecd025a1de2c724f1575adf327b69ebc504c44977edfda3e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:c24892d9769b085dbee9e80aa02929bed662a0b724441d2e34aff93af0eaec37
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:3c8baf036a3093f70f9c437a8834d155b71adb1a347d0caffbeea1730f36506b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:40b36d913ac79b6fddc3b4ebff24efcea15d7f0e59d84e71bd2c41231dcc9230
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:bf1739dcd009825bcd32b08f163482f724b241ad208680da436a8cae1a90efe6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:fa0583d73bf9e3ef62d4b957b643b1defb20380f4dcfef4a25a35fa3886ed046
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:7e635f0b76f3543366effccf6c0d92b923f9a188c4926690af75c528c08e0b3a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:bcb50072ec66a68ed0b396c84a9100af1c956a859f7f439375049826586224ea