Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-tools-deps-dev, 1-debian13-tools-deps-dev, 1-tools-deps-dev, 1.12-debian-tools-deps-dev, 1.12-debian13-tools-deps-dev, 1.12-tools-deps-dev, 1.12.6-debian-tools-deps-dev, 1.12.6-debian13-tools-deps-dev, 1.12.6-tools-deps-dev

Index digest:

sha256:ad536a813e1e1ed8fe6c1246f749c69610f9e6ac35c2660f14e992bb358e5eea

Manifest digest:

sha256:0eb180aad63fd767a637e0651e390816746ff5da8e470f21f32a3f1ef3a60e7c

Size

186.86 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:279f8b34542f7cd98f66b9703b3ae2bfe0a2c53f7376a846b3ce7a9eb1bf3997
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:a81d6df5d30c05c1310abf3685207a00788f47b360648a82266d37fb2edae325
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:2a8b403fbb9125bb1af101604c3490568b0d2a963d9af5d4207a2f01ed927ad1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:e144537627707b0ad7b79cab380c7357b68e6dac1d5bb0c58021d1db3c0e015b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:b28735376b9607fe80d213c881d79c148ed29ef21cd5d99fed9ee48182810b9d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:c74521fef57ff8433968e121d8c9ff74435bcec1ae655c6f747c0cb6a8b1740e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:b73b2b45a9cdc8b2f03b595d4921c6d04e7243078ba6f960fb757bcd3b8502a5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:8ad8c5133952ec3f7c3493fd3113b9a107468686c22df950cc4315216f5edee3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:85a239321d2e653ad42b21ad48bee3d1ce032528f70bc729a74e9588857420eb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:3a3bba8973db4c0800ea77932780ca3e012a492ae3f1f8e11b53bcb338d901fb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:af05f282557727da1c1a4f4700c4919b8d6dfa67826345c441faf88e3c5f8fb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:5d2c90867c0693b926924b8e87246b3a70fb2956ff4640dd67383ad85e0a221e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:b7a471b3d374bbe8c90e67eaee6dcf3076748f5613d31b4e386fc7c69e9b1d32
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:66ed9609711314e83db32617b736ba051ee441ec06868038d42089a47c8f2bae
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:7aa5927ce5900c432ad90b3a6f38cd052288b0038e5bfc1737cd0bf40009de6d