dhi.io/clojure
1-debian-lein-fips, 1-debian13-lein-fips, 1-lein-fips, 1.12-debian-lein-fips, 1.12-debian13-lein-fips, 1.12-lein-fips, 1.12.6-debian-lein-fips, 1.12.6-debian13-lein-fips, 1.12.6-lein-fips
sha256:c2a078982e70f242655ba250a46ec8bc35bd796264fd64d4ff7cd8841f6fd9aa
Manifest digest:sha256:f04be05cad93f12162c437b26354c8906d4cdf3b8325b708bc8d5acc7b0212af
Size
113.82 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/clojure:1-debian-lein-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/clojure:1-debian-lein-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/clojure@sha256:7a319651d27e30724e8cea9853be81a26ecfba44edc0d9c9e29a654e3636fdff |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/clojure@sha256:f2ff7fb58d0a03df288fc59775de597a8e2bb7a70c4e222c125023cbbb10e71d |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/clojure@sha256:a675dbefed78bf2f5379890dc911f72f271523abaa1670872732f2da569157ae |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/clojure@sha256:8a97b83253bf94cf92b7493bee0c8e20984640a1489d7e506fb300d1ab131a8b |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/clojure@sha256:776c288259b1744f7020d68ca4358f40b2aba1b23fee244b78067a9c42179240 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/clojure@sha256:a42c82534d5fc850c376a4de597e8eb7dc4af75234d9c2eb9becf552f45df9f9 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/clojure@sha256:49214e0e85ae5d4aafd99863fcf0b02698bbac978c7e5ffc3986e1d84d5e9dda |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/clojure@sha256:5c9352fdc37e7e70740474d33dd3da7a0bbe045e0c9d5de414a4bd9e696e03a2 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/clojure@sha256:db937994375d9581768d0603071dda336152506e06d779303f8dff6b478a8dd3 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/clojure@sha256:a96be3f329ccb6b643adea97bfab51903a250c9d98a23dcc4f9f5aabb7e8c712 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/clojure@sha256:78e602eb4dcfbeb438f9661854f950e0462e1e73444ca068d3b84e1cff2c6678 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/clojure@sha256:f4cbd9dbf4bf7318f8d35bd2d0eed996930209f2ccbf9b9d795654081dfcab97 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/clojure@sha256:82a664ac0593fda31f7e4941933535871be308c38657736d0b2aa597cd20abfe |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/clojure@sha256:f3a191be4383215e7e88db3e28be0f2ed7325ccc7ad6ab34ec9ca43e50a54d3a |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/clojure@sha256:3e8c58371f0fa5a7c19c1d92b12ca9adb9593a2583f063cc66a906948b2b17c3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/clojure@sha256:451ec01a6b6af0f41bca2a3b461887abd009090732bb7660cd94f8b04674e027 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/clojure@sha256:db5360c0d673694cadada7be47613bb63832cf4c7d90a6dbbe43c623f4b585ed |