Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps)

CIS
linux/amd64
debian 13
Tags:

1-debian-tools-deps, 1-debian13-tools-deps, 1-tools-deps, 1.12-debian-tools-deps, 1.12-debian13-tools-deps, 1.12-tools-deps, 1.12.6-debian-tools-deps, 1.12.6-debian13-tools-deps, 1.12.6-tools-deps

Index digest:

sha256:7dcd4c2ec77e57791b388cb9b782c79fba7d96d4f71c25596ac628c411071d3e

Manifest digest:

sha256:64016da8338fea04dd67c9310750eec64afdf4d1bbf8f2f1e29a25c2b611af75

Size

85.86 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:b605f883be0c1d99a0dcbc2869dfccd29bb6490913a08ed59764dde2d2be6a8d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:00bdb271da94b328124c0b66092a14b65aa19957902d1892b8ac7014372e6083
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:aaec53762aa6b0ea24a83dc4239a9b66f8a9e02003a84aed5b69780b1375fc6b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:9cef86f3915c596f184f6724bba0a9d63b49eaf6bd14a46d0ecfe0ff30ec29ca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:af54db9b6968fbb8fcd63b9bb62f75b52b65f44c4e322db1c2d971cb361f7c78
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:3163c4cac8d082c0a574b36c745870d7c21a36d13c1918c6abf45ddf665a8bc6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:7673f62f692e47b7b2305315ca221a8691e11dde9f79349c20315e1d9e992439
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:30ee12ee4f4643b435f75215b26428945bdec1eec6c8094deb7fde4aed81c803
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:0f95a2a344cae44ede4ef07fd78592055477b41b00eebbe47da5fb891afb002a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:62f92d1e3905ebc9fa52d46404841aac187f1d4cf3fae4db020595aba944d026
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:98dbd6c58e2e1c564fb954831efcba4e3fc04a9e45ff55f6e12affadc1e96bdb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:526fd2c30530ca246df7c3a25191f290837e20e13f272cdd122dfcb2e6c0f9d2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:71af340f29cd76b178c9e4a0f4b03e830957c6713e9d5c7361b764fd34e82e62
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:3f58aa6f88d700ed6b97377c784d40a52fa35ef24c0f9ae5448311a9b58cfe7a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:5f4e719ffdc9c82346c76fbccae38dd969356df3eee8720d375babdc51d9e5dd