Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-lein-dev, 1-debian13-lein-dev, 1-lein-dev, 1.12-debian-lein-dev, 1.12-debian13-lein-dev, 1.12-lein-dev, 1.12.6-debian-lein-dev, 1.12.6-debian13-lein-dev, 1.12.6-lein-dev

Index digest:

sha256:c6c7dc2a3e311ef67dd5a8f03cb2492a5e1a76788b943174d4e44a633497e63d

Manifest digest:

sha256:21ce98b08cd68bf9fd13ddd3ae8c8bc5a17a757a9360b4db71badcb1618d0cc2

Size

204.32 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
4
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-lein-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-lein-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:60c33914915d0507c9f5609d1ebd08c8ecc194ee667613786b77989d0c4fc6ef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:ad28c3782a60915b7a428291d560fc39f670b6d059c91b15cbea535c42d399ab
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:ad4a28f9e2c6bd098716f3287c36304b8403a15e76c1c9cd93098283bca066f3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:8c208a93805e2ab44d838bfec7150915db941f98c41dfb27955df51590afd147
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:36a50bd4104dd3b8c7858340632d82bb3baa09e52fcba2e73264819b8d3f73b2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:589395137efa69f21b55f0f509d2fad2a7ea41266aa3031b6a4e1cc10c0f5277
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:af0f94040932514308f14a3db509c258856b8c67a5b0174ce86e19be8f7fe79a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:6422647cc32ac933b3a065471adeefb50451ba6d48e9b3b95e2465a6f8a63127
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:113b5892fcfbd2323e43a72b5f229c690d9cf4df107d4ec486a96941608a4f38
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:09bffa60f8af59eaafae14a15cb540cc359ee9bb5957c036f267f964b7d618ae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:bc08f7965891e1f056cab5d80b1a8f732f24345d2986dceb0d68d41c69b466d3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:14d322290490dd7ee17992e1ddc099394a2e06e370301ad6a3662c9951c12361
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:66ac7b194ad2807e4f6e9df1c8a7f18e97ba05d088370ea0b24b9789b30f3830
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:cf20871ff6f7a73386d072151913318e7a5bf20a50c56fcfecaab76e8e1add63
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:3b41b5bfb1ee1d90d30f766323856b070367b839a9fa8e0a3bfe58db9d071af4