Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine-lein-fips-dev, 1-alpine3.23-lein-fips-dev, 1.12-alpine-lein-fips-dev, 1.12-alpine3.23-lein-fips-dev, 1.12.6-alpine-lein-fips-dev, 1.12.6-alpine3.23-lein-fips-dev

Index digest:

sha256:c29b516b506dd5e9e9274e5342a10552b84e156eef69b0f5928d4e3fb27364f6

Manifest digest:

sha256:eb6653afe94f375d4b22f2f0f0d0f831c89aefd9137e8ef6c45bf24a4c093261

Size

62.30 MB

Last pushed

13 days ago

Vulnerabilities

0
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-alpine-lein-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-alpine-lein-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:760ccbb9b4e1e1c15cfd8a00b34c9baeb3ec5aeaf6d41bb75ab2c2656d9e2eae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:a0317370c62d3ed9b3e5b0708c07a1815513473f6a52cd3c85f24393e0f6c78a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:389097cfaf1b0dfd7173bf2691ee9317434a1bf22d6f0e9a07cc097ef41ec1bd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:8aa0edfe730390f4c8e209ef6628421a42e381f96f94a6fbf665e3925ba182f6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:47aec33f116af2c0f2230ad4c1d670d7bee7d4c6f1344df2f822d39f886b8740
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:94a99692e1a6f6c9a36c7109582b866ccdc8e36a50716609103cd4de53013578
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:d2f6ae1ad1c71465c53c36734b3c9ceb3f09892e453b64421ea4ed8a5063118e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:85a73b5c442a55857ce899588f9babdbe45738cf254da25a61563dd9754e5ced
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:b571f0f6b1b5168225b846d1aa9f404d11da306a562a1fa34311ad9842a7cb8b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:b04eef6615c23e4931e3f12bd9f097f448b466a97ed3166827dd4d48a17aeec2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:3f48c2a68874b5b99c7bea3252463908e25bc033b9bac03321e636dc2431091b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:52666af5574218810896b6fd0b0b1e251482d0c744e2958756500bcc075a4557
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:f02265d39efec7dfd7f04a3941c6f99bdff1050f5a965a350332f0be76918623
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:22cae9849c3bba4c16a50ff26a6e0a9d0d0e0ed74541500268edd95ae4bedc3c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:197f144954f5831c27a0be8241161bcf96fee250f18eedce33b35e7f82fc54d9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:8d2c23b1ea3d890be6409b99710d235330b9ebde27c5ad4fb6bb2aa81f23188f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:c87eb604855d34acbdc2d2c6e64b0ef385e2028ba143910c2d369eeb1d1c6374