Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.12, 1.12-debian, 1.12-debian13, 1.12.6, 1.12.6-debian, 1.12.6-debian13

Index digest:

sha256:1ba72655240629463c7b81bb5e8f109991eb861b0a99110560f5a10dbe5232f7

Manifest digest:

sha256:037eaec54ae3c683cd6b23a28c7634572e9e0374d6f3e35461efcc2075b03cdf

Size

111.07 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:fcfbf6b688b1a471b2f5d6ff68ac8f5dfeee49729d15b96877a5decf03cd0b8b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:2700e8fafa87aa8296576e5b5fec411e80622852fa23e7f289e1107ea5250e8e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:0d9e1bf9ae85a6f8f8dbddbb7ba408940e6126776e7a9175cbffecbcf1083279
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:e9eefb10ac32ea31f312fbd15e1a40593724d24b37df0c1e180d9ed2241a2cfc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:4d0d91513d2491350d2e8ea59bdaf178d82f0362f62d42b1ffa5d037e3a44d28
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:fb7a3105b243d98a2e7080eb50461752e9b5223ae1fef5a3553faf947de200b7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:d5da15d74f00319fe40d210a27adac27a6a4b6e5979fd9dd734dd0f056e327d8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:b735039df75316e19571a38a4fdd860cc9bc716adf4b6128732eee0e1d00d686
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:f836b743bf943846d46d2f0db3c0fc8fbe538248d5d846e49aea04c3d73d519a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:fdbdc65057fcb0d402892e1032bff5405394f964145343e59c57d5d0e5130ca6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:30e859ad33e054323c9d419c1c278428d355ed215087fa771242c070a3ff47f8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:c88d166df920264ee79d1bf7eb173ccefb28cc9f4bedbc284b2fc177b2362628
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:2788350f6fa03dfcbb9e6efc94f9d5a0999620d1525d344e523c43bd7721fd06
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:7a8b7611bd0a06d6f6443c9fbae41f08d97d0b8754e2e4d9e04d0a866628b438
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:bbabd2023eda17343676422adbc93af51e2f67cb8bbfb6c6db721bd5b2297c8a