Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps)

CIS
linux/amd64
debian 13
Tags:

1-debian-tools-deps, 1-debian13-tools-deps, 1-tools-deps, 1.12-debian-tools-deps, 1.12-debian13-tools-deps, 1.12-tools-deps, 1.12.6-debian-tools-deps, 1.12.6-debian13-tools-deps, 1.12.6-tools-deps

Index digest:

sha256:64c6bdf7002116f83cf2f7ced58b4ce13d464346c4e0d71f075a230c13612bce

Manifest digest:

sha256:ac2ba941438ef0c689d3d93941bb1cd6cf3a9dba8cf745e40e7098f29acde174

Size

85.85 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:2a002e261ba3eb79bd9ce2c0d96017562d619b9cd067ee635a33b72c904b6d5f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:068c37b92e2ecc1b67b25ca004cbd67ed3ac798af9e8d70540a0ee9634486e8c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:40819ac992feb78b5152e183edfeca17858ab057145bc9e26745078dfc0cc6c8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:dd886372f376104e8f1de891c907dc029a0f0ed7433bbfc3fc553cb6739ec5f5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:5687efebc0e941624d389a32e7767b0de9aa10d679c28dc83ccaa6200cf76463
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:c69cda2986d30ea1e43469b899fe225f2ddd96f5d2660fc4fdd3b0347518e815
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:3c17690427f878b0387c803bde3486a4bab9c3dc8905468f9f09f802c0ff6bf7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:2c5897d1d7344fb39d07797fc8f1d68be77a1ce74694fadb2931563dd4422bd5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:2f0172fefd4e7bbfd6b906472b7b81d4c85c122d48ed46f3c003cde7a453a9cf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:af6d34c905ff398331437ffb6eb26d51e4b3dd847453877d416ebb7a4557c8bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:9c9313ca7906526f829d1b654df2e0d0592a00c4571a4ab893c13f0329277133
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:91e2d9dd8910de4558f5481102ff1f9e94ad5b7ba484cf0129ad354755ecdf75
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:a22bf0180bbf9d417ba0e83a997d690d4a799c72e2fb008e99b76f26c32dc5f2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:2f2037e0c04b477bd3439aad3f77b9290f4407c102fa4a34aa5de5fff4e62fa5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:4a5c855c0c62616c9652a3cb28807b5db9d93a78f9c6d251d6d47a7a27b3ba6a