Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-tools-deps-dev, 1-debian13-tools-deps-dev, 1-tools-deps-dev, 1.12-debian-tools-deps-dev, 1.12-debian13-tools-deps-dev, 1.12-tools-deps-dev, 1.12.6-debian-tools-deps-dev, 1.12.6-debian13-tools-deps-dev, 1.12.6-tools-deps-dev

Index digest:

sha256:7bbbf0c19d68cda36a97be8875af3a3d4de21056e2018c14cfd4fb62eac7f699

Manifest digest:

sha256:35dff68cd8911866ae90fc4f4aa5c305b030a8083a4a3d3d62759f3b190838c7

Size

186.90 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:e595d68ee8581e4852fb047e048e0119eeaa9a9a6fd963b3134d9d5f1560cfcb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:f1e9a6a861fcc92df973920e70ff17cc45b9cc645fbf4c8b91b5678f7f585305
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:d18ee153bcc53caeaf5cd35d24f1ba1fbbb436f308485c56240b622eec89adb1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:c7267140a5401bcf77d9639a6c2af2601e5a02a27a05215acf39d4e87f9a1d1a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:969a5d0956c2ddd7db4c34a376263da2ab6fe01d69217917c4fc69a249af336d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:d048c3a1d94fc612f948a5fb72e2ff3966ae4eadc11814b139cae7a85aa3a4db
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:603d7bbdb97e71005c350f0d10948a414a4136f01c5ede7efcfe7eabaf681c1f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:955fc63341b9b6633e052c67dd32b748e12ab19ef04bcd9d1c38e2cbd31433e3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:f21db8a6e6dd55d36ee5d7f9a498f2238f958e8758ef48ba9a94e5ea28df33e5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:b9a490eae4f44acab5e888c2f2b91d9387409326db65cb9da64b0bea28621fb6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:dd02939a219ef6bdc2c8ddddc2ac7c9cc67bddcf4fca7ce5583f1802b0053c56
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:044f1340b0799f0df5b56b43416df463af3c9a4fe79099f85a08cec325f84af3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:8b2f177115b261e4ed2b75a8a5a5c04e7210ea23e3fce27d40657e9d4d8a79e9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:33956286b0f2a8c5bc3e98e9669b1a87e8fe1d356d358488a8cf9abe9fa4e6a6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:e2382ec45db4c9fc3179569f86312ee52ba16495e40e3fad4e92a86db1896aab