Sign inSign up
Erlang/OTP

dhi.io/erlang-otp

Erlang/OTP 27.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

27-alpine-dev, 27-alpine3.24-dev, 27.3-alpine-dev, 27.3-alpine3.24-dev

Index digest:

sha256:48aee6ec1c942efc1f883ace0cbbf52c42d38ca5d05d09810063958d8475e076

Manifest digest:

sha256:9feff07c60ad4e062ce1a43d3feb7a71440d07c7e767530521b5dee55fd725ed

Size

38.08 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/erlang-otp:27-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/erlang-otp:27-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/erlang-otp@sha256:14a2fe7f0dbd8fae921f25a005fa33ac8ace580c05f75f6712353e18b2e98439
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/erlang-otp@sha256:05c2b3734805ceb72c084d0dab26e51eb8a692cbd00d8c185cfaf42d99df5c20
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/erlang-otp@sha256:6fc5de38aca0786901374a2858dd1bb2aa34660510c4f17760ead88ffc539058
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/erlang-otp@sha256:83710167de342c21cf26c98faa3992c1da7b6b0f917fd40c9772d39b286fe445
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/erlang-otp@sha256:c834993d91b7228b5ac59982c4422b5d90e136e55db4b543f0710f23efc8210a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/erlang-otp@sha256:85458186b8cf9d86729e7ea2c3165131ec6bf5940ab1004271e5d348b96b4240
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/erlang-otp@sha256:061b6b5fffdb7a3fa5c41b6cad29dfd29c05feb21b9ac557d140e447352b8418
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/erlang-otp@sha256:8689312c9760354357c59ac730b00e3875dd3d6566b02990a543f4b7b18d67cd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/erlang-otp@sha256:c5c8b1efe1d512af7c8e8da821c2de68d1c55873af851f241bcb361e784bddaf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/erlang-otp@sha256:1e3a8e8fa4e7d55c18db431ef59de3e08038547057c24760804b1873c70516f1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/erlang-otp@sha256:358a69ee5a0f1c82af458b46ae109978ce4c12460b3ac3030abc533a906e7712
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/erlang-otp@sha256:3195ed73406c15ec72f31fe79317040baa0f18c3240cfe6868e36270caec950f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/erlang-otp@sha256:f2e033a41e6320cfcbf351c742fb41e76e6609b80417da959e5b96d2bf969b6a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/erlang-otp@sha256:5f200b99d3f5196eae39452dd73b2376e4c5fed2c0e4ca055a2b74135f86aefd