Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine-fips, 1-alpine3.23-fips, 1.12-alpine-fips, 1.12-alpine3.23-fips, 1.12.6-alpine-fips, 1.12.6-alpine3.23-fips

Index digest:

sha256:fd2c87d42ecc97071033ff507c1ab384a2d9ba95138dd29a9d02db53554e1465

Manifest digest:

sha256:6575bfc94743fb8ff7cf4d45f28fbffc4855b87b7d2ba070e39c935d84a73744

Size

75.56 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
2
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:57dc27880fbf8a209202845bba590b62ac6d6096f1b8cd1c1a6cd7e391b90db3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:6462c85e112e50e7c07d3827d2e13f9932d2a434d73e90bf868ea1d6e34f7746
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:c91b92da11422694c56d5eb55704fd3a523c68ea74f33db9f1f9d163427e1b00
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:d9f58df0dd9c3b9096ff723428cf323c72a4d3f2116da278bb3b8e051316099d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:ed69864cd5246c7063b90df46fb9c5fa54b878567752ea2b718645fdd91e51d6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:c78df83a079562cf72bcf188da17b26409dea38607f28e919c4cecbf41b1adec
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:d4e151f80529609f038ce0d3f6bd3b9fad1eb8e402e563dc3b7f99135f54443c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:75b22e7934fb5a4a3deea5879d355132396bab8c9cbc667e01e26b951711b522
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:e3850c99939b302b8cbe1ba8c1c568b6dc2e2d1c8b7d6d2202aa1f8d116dd9bc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:7b1501f20d081e98ec87015d74d75b454a1dd0ed783db47740e86d27509ec43a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:6bd93e963c339c16aae45cf6ccd95ef6b3a427974b2eb02e1edf60482777501d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:cdeda3f3c0d55be31f4ac7d23b94318d327eaaef51453ada9e852fe3d085b552
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:69c19b37cda4ee7f3902d21590abdf0e3f5d9c8df7c2d28ca4ae00a72b361795
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:63e86283b369b1f32538b6d5632ce7764263b37ccab25457189c39b75cbdff92
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:a3e1580ed5c40933462131ec4090ea0e221728bbf7bbe887d27ba3fea1d337a6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:3247dc3289e55b78a85ddc8a78a5c6543f18249fa6047452ea3f27cf8456a0e0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:f74b50ddfbd11da62f55dd8b7e6cafb8ee647ff4d9fd49af8f6fc694a337480e