Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.12, 1.12-debian, 1.12-debian13, 1.12.6, 1.12.6-debian, 1.12.6-debian13

Index digest:

sha256:f2809d491aa793f165d7e8490c9d5dbf5c4841d23b328f1674a1af55cf1e36dd

Manifest digest:

sha256:2f51ef8344580a383cb194f0efb53389a3c9e21f4ec39486159c1ccd8c01bdcd

Size

111.07 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:c6d31aac7f3113954b8b4506d26a0d6ba20f622fe6df500667857be0f74d582d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:22e8bd2695134b00a3dba5fac21cf4c1419443c1cfe866ba58b85bfa8408fe7c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:88faad80897edd4c8f6fbabc75e87f62cceb4e57abefd68e6156eee260744b8c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:c2340d632fcf6043dca52d0fc299e46b513a2dc53217391428c31cda47270a80
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:9b9bc733b2c6ce3c1810d27acabb2becef0ddf46f18848763ee48e5f52257729
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:4f51f46367a053310a2e0c707ce6f0ecafe9ff00002e76a7003c79a3cc54ca09
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:92d8816072a80c62c788261272159f521df638b8c5ad325766dbfa8c691d7c29
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:de2b0920b25a3a265e806221c50c98b167c2377d0f16d7a46a9330b8d2091bb4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:2c3a9b2877a131f24c7ad214fa04187f48ac00a7b7cf4ea51f6ace91e8b1b921
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:5a6c3f66cadf4a347429efd4e6165f3ad77d0ba49eaef7e84333627ae64e1363
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:ffb5d6fd30d719bb38b191540c8e0cec6d6ec0bf6f594c93494da1ae59a7ecf8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:029953d7b738a2932252b4bc87f26231a11200719efa0ab95252b6d1a99fa40e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:088e211e682bb50a382f9d6f5fe91d6c4831927fff8e4f385cc004d36f41968e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:6f516a9f54af60ea69da36b4107034918b4881f2c44c48b1425eeaa4fced9cec
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:2001fffa499b9a1f52fe6556850b42da15e19ad7da3d654c7b547076cf422965