Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-tools-deps-fips-dev, 1-debian13-tools-deps-fips-dev, 1-tools-deps-fips-dev, 1.12-debian-tools-deps-fips-dev, 1.12-debian13-tools-deps-fips-dev, 1.12-tools-deps-fips-dev, 1.12.6-debian-tools-deps-fips-dev, 1.12.6-debian13-tools-deps-fips-dev, 1.12.6-tools-deps-fips-dev

Index digest:

sha256:0aee4e2a088a5187a211c59ef71cace6925288878d3f0fc0b273a3f46cea5a8a

Manifest digest:

sha256:4cff3684cdcd1eb7df4994189b01f90b3c1ee4c097a5f6f334dcfb6a2bbf5cf2

Size

197.35 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:de84bf6c9cd4dfd4f2b15d07f2e5f8a8cafb0dca7c368520a04d6d529fdd4fa9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:5a70a8981765213d63a36f3018b29e8d038785a114b8cfbeac145c8a5fb198b1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:43caca9abd30d02ecaa93a5a338e4075e02d15f973dabb8e6e48114a2dacd0e0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:6f92a045c272fc10b232e7d209d50631f7bbf5a3032a5eece72658e991198fd6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:d2a10ee0de93f1c48fe2ddebf475054433a7cd99d261af995a8be662b02129fc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:5f2a1a7225e8ea3aa090edc09d08e424990aa76e1cbb17f3112c83bd40daba30
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:d4c14838fa3fa3d27b6143ab8a61fa11843f75b83a793412271cf591a3f9a8c7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:222854c1492f8bec0e7533628580e97dbe257f9a6f000d8e2bec82edfdb3e943
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:8de4bccc373dd8e4238bb359b785ca333ac66da0915f6316c144484e1057cb4b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:32beeef21507fba472244eee2b270df96935b5234d42b125d12cb514736be33d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:53b4d8549e8e2e1b367a72fa7b5df2e841ba2ddabda695db16aa0419f7116a0c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:085e6b8a359d90ca0ecbac4d28931824a1a2ab6e19224d89a4c3daba266c6ab9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:c88aefcccacace6c902c7c3cae728a9a88af3c934cc931583088d537ade42244
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:812ef9dab6d90b9bbd66340c8fdba5462fd829338994b71cc3a4eda9ad3da167
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:99b36e233cdaf567569ca373540c0b4cc3acd5507fa5531fc7740ae90e70d0cf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:fba0b6375115d31b77e774cde5da884375b1ab3040474b5b10fd6271bdf26b08
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:89a29fc911afd8bd9fb7ac47e3981baef1eed657f19ab3ec9bebb7a0c9bad54f