Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.12, 1.12-debian, 1.12-debian13, 1.12.6, 1.12.6-debian, 1.12.6-debian13

Index digest:

sha256:2d8fb7aa15ef2686912668d1ca80127ae3e066fbbb15110060babf9fb0a5830f

Manifest digest:

sha256:db48548695717e20cb0f931116cd73a381e0a53e21d29acc97a4038872b2b411

Size

111.09 MB

Last pushed

4 hours ago

Vulnerabilities

0
2
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:5a74b18897511a1fb1e0c810f309ad20748da9367baed30477f33bb1fe9039c2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:42499eb6e0c2d81e1cc01240f6694538a1284fc1e23a76febce0bfd3163ed5c8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:5eac9f8e5f5efa60ccbc5d75408bff0a681795f5bb1a65a3ef9d246f3a9491bc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:ae0d4c596082b0229bea0f1108bff3fcdcab8a40fb31f97343272e0fc6460298
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:b92ea5cc8df35f86b712c87f68c3343ad0d0b1bdd5941937782022933f3a1859
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:b0918c991d99904778a37b613313568b41f568cd8d31d2dec43a6733a7cbc197
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:3a584376f2ea9808c9aaa93d68ce9df97bd80828a56c39e05a750e6fa0eb623d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:c418cc6010479258163400249f00dd2b6112698398e76f2b41f8b2e666217f04
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:58e2512925b46d0242a618cba0b5090fd3f249256550e62d01bcae23f5045961
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:b20b1b55063e06645af5e60300549ac066fbf0f366d4c61c8a489b3ada9c9faf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:68e8d24345c67498226c828a23582af8b20e7dbc9c878e34887f6f0d5adf9f04
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:2902d818b9f69f8c8a692261468e484d582ada60e0396aee73e8398419de2a34
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:3700b1369d7b94a3d6f233a596ac02ce42476c7f8a2ea54216534fd12d4e84e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:3e9c09b158d94a859989153868e8ef4ec47760a03a23608c1afbe43750d7e7da
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:2db2ace9ae898c1501c3a0b84f2c96a8dc14e0415af43571a1b293b0da2f784a