Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-tools-deps-dev, 1-debian13-tools-deps-dev, 1-tools-deps-dev, 1.12-debian-tools-deps-dev, 1.12-debian13-tools-deps-dev, 1.12-tools-deps-dev, 1.12.6-debian-tools-deps-dev, 1.12.6-debian13-tools-deps-dev, 1.12.6-tools-deps-dev

Index digest:

sha256:40a20ca5978285bb7cde42dc4964e59c9678f44b7ada875870d7b7e6cd3993ba

Manifest digest:

sha256:759d3c15e8dec8fb1d7f9e7364a3409ba8f17bb0d8375994a664c5ac1677be22

Size

186.90 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:016759e6a4c940bccda0242595e68ff41e0aa76b904a6f94d3033c1600fbe764
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:6c939487f3587d02a027c9360c8c4147f01aa7bc8a1eafc1c0caeb87d56a9a3c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:88fec1b06be7dcd65f1c5135c1ca7f8450efc11efa66b6f3321c2f5d65752126
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:4d6db98a812690feccae18f666294c4d2b848d99afeff6fc5e5f60a5268175c7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:4946571e3bb1115f6583c120290398749f1f2efab56ec0d720e990fcc4a73e24
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:d8bf234c87eba4b9c121d36a77fd4da86b6ba4ff21343b25ec631bafd159b966
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:1801f4a87d290bf67a8b6dbda71f93f653034309d82aedacfcc7fa07ddba8c4e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:88d43307f3d099906fed3733cb32f5878bb11da9beae98bb50de76dfbb515b8f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:43772a63116bb862d3e45d1b80c16062dedff3768031827a855aa80939189736
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:c9503ed96720f9d327cf7237ad07abeb74ed6ab246b5103ef1adaf1f4ab49f6e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:0565e52274dfd29c92d29ed003a5484c33d161ed8cd8a2aebf34e0ea7ebee5c6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:9e5e71e4d0b47c6cf80f0b59887eacbb8953782fb1d9000b54c59cee2b19ac13
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:aaa73e1c5a30bf6f1d6297e1b8ac592306f66ad95d7b5a2bcf96a0121ecb7a8a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:2fd58d41f382e78a22f82132183f01b9a482bc6b7d33545f1dd06e0e86671f03
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:3208a6df0b2d5b49a7add5afa33ca34ff7fabd274e43c5746d151319c32bbb41