Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine-tools-deps, 1-alpine3.23-tools-deps, 1.12-alpine-tools-deps, 1.12-alpine3.23-tools-deps, 1.12.6-alpine-tools-deps, 1.12.6-alpine3.23-tools-deps

Index digest:

sha256:2a7c988705fbeead59f45a3fa03e856c253ea34255a165ea362026d953541bfe

Manifest digest:

sha256:4a8c6c901922ac2fb1fc3e2b025e45aeb5e66ce010240f4484d19cc74d68d0b7

Size

55.05 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-alpine-tools-deps

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-alpine-tools-deps --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:8dd0108fe6abf7139c629833c40d6f87b1c7a84c3ff58e8fa7b41612ee9506c1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:db49f6176d6db7a68b1d6d29a0e679e5a683b024913473dca101bec78b78735d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:5eaf955c7d7e752d3b4de0ff1a91573718374cd7e13d6d079f7de9124becee65
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:f6b3ab8b2548ffbf053eaab361c7b7044f82c79b75ded94ea2e50738716696a9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:d1edb61ae7663b49bd22d801824909880dd940215106929c2cb3bd4c5068317c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:930f6d2ee7c24937fbb0eea9b3f35f4a87726d72d45550755eedcdf6f963cb0a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:2094f7f5c7e66112718da1f08436f36c2e7cc4ae9efbde317cf7eacc205b06f9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:991672e39f79664114fe050c25381d0e85273de485673c88802d7901c33e9bae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:1b1458ce00d608e4fa1dc9dc7f6663e26e92ce00f08a20d17305722b025430eb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:7592104c79911fe0dba9aa46659dda0df8cdfcaf1f1f7b302a61cce74b1c4fb9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:3a5770d490b7eba28190874e205b0742e24723b44f328d733ab3f15da2b130cf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:758a4a31567209403ff215f8e217a77f249c134818ff2008b4f9ea9bd46d078b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:242bd25abaeb9529102b399be73a2d758b27e432e007109f31aa34c27ec3e045
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:0f14062ddfae30319ce8facbc6102957105ba6381e5d821d6584fab141f9e199
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:684e08a273739f1ec22c4bf2279e7a8c9341f12425c458238dd04677ad4af1f0