Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-lein-fips, 1-debian13-lein-fips, 1-lein-fips, 1.12-debian-lein-fips, 1.12-debian13-lein-fips, 1.12-lein-fips, 1.12.6-debian-lein-fips, 1.12.6-debian13-lein-fips, 1.12.6-lein-fips

Index digest:

sha256:c2a078982e70f242655ba250a46ec8bc35bd796264fd64d4ff7cd8841f6fd9aa

Manifest digest:

sha256:f04be05cad93f12162c437b26354c8906d4cdf3b8325b708bc8d5acc7b0212af

Size

113.82 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-lein-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-lein-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:7a319651d27e30724e8cea9853be81a26ecfba44edc0d9c9e29a654e3636fdff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:f2ff7fb58d0a03df288fc59775de597a8e2bb7a70c4e222c125023cbbb10e71d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:a675dbefed78bf2f5379890dc911f72f271523abaa1670872732f2da569157ae
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:8a97b83253bf94cf92b7493bee0c8e20984640a1489d7e506fb300d1ab131a8b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:776c288259b1744f7020d68ca4358f40b2aba1b23fee244b78067a9c42179240
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:a42c82534d5fc850c376a4de597e8eb7dc4af75234d9c2eb9becf552f45df9f9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:49214e0e85ae5d4aafd99863fcf0b02698bbac978c7e5ffc3986e1d84d5e9dda
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:5c9352fdc37e7e70740474d33dd3da7a0bbe045e0c9d5de414a4bd9e696e03a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:db937994375d9581768d0603071dda336152506e06d779303f8dff6b478a8dd3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:a96be3f329ccb6b643adea97bfab51903a250c9d98a23dcc4f9f5aabb7e8c712
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:78e602eb4dcfbeb438f9661854f950e0462e1e73444ca068d3b84e1cff2c6678
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:f4cbd9dbf4bf7318f8d35bd2d0eed996930209f2ccbf9b9d795654081dfcab97
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:82a664ac0593fda31f7e4941933535871be308c38657736d0b2aa597cd20abfe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:f3a191be4383215e7e88db3e28be0f2ed7325ccc7ad6ab34ec9ca43e50a54d3a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:3e8c58371f0fa5a7c19c1d92b12ca9adb9593a2583f063cc66a906948b2b17c3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:451ec01a6b6af0f41bca2a3b461887abd009090732bb7660cd94f8b04674e027
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:db5360c0d673694cadada7be47613bb63832cf4c7d90a6dbbe43c623f4b585ed