Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine-fips, 1-alpine3.23-fips, 1.12-alpine-fips, 1.12-alpine3.23-fips, 1.12.6-alpine-fips, 1.12.6-alpine3.23-fips

Index digest:

sha256:b4882f5dc1895e01159459129cd8f56bfc35cd065f7fc01e7395962a6a6f8ce1

Manifest digest:

sha256:bf91ab33820283d9ee05bc03b9e09fbfebb259d4fbe4b07c510b28197e2e4978

Size

75.56 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
2
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:7877c1c815d0e5d410ba1c24a9f176fa976795ded5ce52338c96296c55a3f383
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:a1d5c3a666538ddea5ebb92ed0ccb7919af7dcceacd9f7671b90087bf0e5d8e3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:a5277a97f859f0bf9cd21daac38967b6fe71090f15659073cabcf2f17d4d9a28
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:fa79490ea86c17452718054bcbed477f7ad9f1febb9a4cc5952ef36f28803315
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:e8ca67e2e06377b9f21a9e2dfa78bb834ad6aa3d5e935df9bade1c60ef11f17e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:d35a617bf32383a0c65ecd54af192778104c134eb818aebd1ddee125189424f5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:caa63b544b886c80e909c5085b22c06a191b0e60535f6b7af898c02255304d3d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:d948cc4dce4dc9e5c444fbbdee11cfa1b69ad521bf2dd6c9e6fdefd5902e5350
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:d844d23911a738153bc08781a3cc310a2a8cde94a2bb3716d7b3324bc91992d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:0f3d91fe429efd052c669c181a8c89f53559fa8c2cbba508dd2446b38f0370d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:cea1a477019b34964d634d14e53ca9ed8e5349731df2853337e081c80cb6db7a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:5d418a1bb9720d8da6f139ba03e7a994da80adf8a9a5cc27c351eb82081e0851
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:5f09ff2ad224e7646e2aa1c9a08ce6bf58f7c963ccc0bdfd0014edae3e9ebc37
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:12a28a24b9418596a2a27f28780390f405c6a1511cbdbd6c6cb8e57076d6a7f7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:5b5615a3b8e1055ae3da4618fe87f84b6b7c5410c90fb2834c92f7b044153c8e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:a439c433e15d24cc14fc079d667250d2caf28dd39fbc6df79f182784da852b9b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:64934aa071ce1c95a773cb593c9ddc977ca53d9b3e0ce6a8442998de264246bb