Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.12-debian-fips-dev, 1.12-debian13-fips-dev, 1.12-fips-dev, 1.12.6-debian-fips-dev, 1.12.6-debian13-fips-dev, 1.12.6-fips-dev

Index digest:

sha256:f9c3efbb39f2edf0134c0814f9351213fc7ca45655fdbf1fb07a4efd066e5293

Manifest digest:

sha256:8cd7c174244290268a8dad7094df6e44be416f88ceea895f7cc7534f9bbeeb73

Size

222.73 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
1
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:b068ed0190912b2f9bc9541bfba313dade8b4180d25b653470b1a1dac3a7e3a2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:121d185e567af2659ef8341871db2e90d92e37ba000de4fbf1ab10d0ea878dfd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:7e6c18984148cfcb69d06b5a6f0f1591cf7a61c52fdd124b17b961038ff88789
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:eac5459f0d523b47d72127913bb32e26678d59328fbc6d94564039cc56dbd2df
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:8d583ca76e23f5eb6faa8e84a910ffcba1ad96889f7dbe7a108a23cac2b603e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:42c327b3fccf0634b5fcbe41a2f224a41e6db8d29b43e61411c780202ccc673d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:1c9579e6b61af99bc4dd7b171d762d085c5e4e9a769f60bce4a3edcf52c92b20
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:1567b58910e0d4637652daf4e010a1e9bf90ae3b768537be6fc4497f85b914cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:e6c9250e7ca63a71774db6faf8c0d3bdb12e96a3a2df616c3b1131066ff87cac
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:64d84a213c94be15cb3d6969a65fb04e76228770f1f4570d0345a32b465b0189
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:40f1b069cad31b6fd024492b886896ac74507954709bd2d8efbafdf45b44055b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:bd10853f4b956e5ba628ac11ea67f08076eb627e653859a4f7bac678a7697aa4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:9d9ea94381258bbfd92edd55111361fc8bbd7be3123ddb721e1b7e551820d2c2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:46ba90c33c2cee6c3b9bcd9a5488dd79ef338f3cf416d7187a4d25d8f772fc55
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:a0c1c861d8c7085a3d6473c2478aa54b1c7755a5748b12c719a82703a66c14bf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:f708ab759c0702ecb216bbb9d821348a6a47498bada30ce7ad10e0525021dc38
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:589643decc9f75099ecd9def18d6f470e4b8d049623606830129ef84c3a0af20