Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, dev)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine-lein-dev, 1-alpine3.23-lein-dev, 1.12-alpine-lein-dev, 1.12-alpine3.23-lein-dev, 1.12.6-alpine-lein-dev, 1.12.6-alpine3.23-lein-dev

Index digest:

sha256:284ae90eadbab867a0f5742529e590d40c51a2a8bd33bcef78b540d3b153786e

Manifest digest:

sha256:a13d2a718eb4cec1e5eba8949c75cb6106dbc480a4b1a86d9ac5a5fdcdba9f9c

Size

61.02 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-alpine-lein-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-alpine-lein-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:d30a21749bf769f7e1424be76ecfcdde3848166833216c59c9ab67e7b3f9b4fb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:aec8f5b14a1da1ae4a283705efa1e3fd77eb6c0a52fec9cde0dd884caa6f1ea2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:0ded4ace414ceb7d58710f3aba658ebfd020aeecc7c0f4a5e26ce2900612ea05
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:9b7241c3b650f42289b2ac524372a4ff56229f66f0a64107ca967fc22fd3fb18
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:0f574ee0dc9214847c719dbc1f92940097e34ba3ceb8afab1e0acbed0e000e03
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:69a13bc2b65786ec0c98db311eff0c31467fa5406de3981ed891de1fd8411796
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:e783200235b67e518619187d8fccf800c6b049f0db7925bd2be7a8c66f241a07
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:03effe80302cf14a0dbc128999ca6221535f0479df97deb2eb386dcd8e10b707
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:92c30f86c839b900917b29fab57b1f8adcd369af3f09ecff1bf641d1fd94eb5c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:cee40e587e12c507ca212e617733ec3bf7dddd5b0d9ac0038360afa96958a568
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:556f353059e608a234792e2d8bcb9c7a73e617c00101edaffbb13ac1df8a7616
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:2d130e4aec8dac4238aad7ad7cbdcf5fceaa3e4db03878f54ee0f6e09e09259f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:6cec879d755a55354c6f048ea56d312f43fd061ed65203231989d94d5ca9049a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:df09ccf05db32c664a11028deb12907ddff3d67601f732253966cecc8c04c39d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:c85c492e2de966b2a70f9f8167aafe9f5ad46a1eb59c29d3ff40a4e80a1ba6e5