Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.12, 1.12-debian, 1.12-debian13, 1.12.6, 1.12.6-debian, 1.12.6-debian13

Index digest:

sha256:039f39f58f383dd1bf246d7c10079173eee528d875d934e8b8eb4c2fa012fc5e

Manifest digest:

sha256:62596b1fc12eaf178dd7a515239a624095f28fabec51e7038caf2cb60aba0ea4

Size

111.09 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:ad3650cdace34b173ad7b580eebc6654fb7d191e884812c3483e6453fc79b3ba
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:6e61e7dc3b8b5283fb0f15540f85e7ad95b25f04a4ca51537703d8563c720d68
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:4c4ecbf7af4128d5ad4b78397b6598eac2d2faf8f1c2cd791e1952a4628be7c9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:e874263112b375f3c6f6049668253f66c698006d24245aff27fe9cd6352d6612
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:1e989632794daff43675e2a060a6a60919c69c6bd65b643cbd84ced2ec966254
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:fc906553d5005217fb9bb99722cff4e5c913285fa85ed614a22c8534c40d9001
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:42845142b0de21c6b4c109ee6849b2dfbe96fb29e1559a289f438c558c44be34
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:01834f18c25d531653513bc72d7502f8c7402fffe496977614a3162b11b86396
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:28c6902b3eb889641712a1e0e79f8c7f04b76bd3a625b57ceee61d2ef0e508ce
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:7d6ab37528b5f2d143848bda55113a0a51983dbb431c9598888847c1726ed1ec
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:27159b59ec14b256d7843b6a0c1d8346d65bfe3c418487ba46a3995d994578f7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:6d699849a94776ccd640789b2059fb9802407b52417b329620ac83a2a8b24dc2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:5dfaa5d9b5238025419f8901bc48ae7319c1a897ff4a9267e988cf285afdde8e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:7d884fcf9f690bf977e701e17fadd7278a8c128d53159bf104d39a2cbf735635
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:884ffd7b0cc4baca1a68c53a6adf76939a05e8a02f3009ee536df0b13fb7f753