dhi.io/erlang-otp
28-debian-dev, 28-debian13-dev, 28-dev, 28.5-debian-dev, 28.5-debian13-dev, 28.5-dev
sha256:46ab32652309d3901ad6f8735aa0e4c154c6f4e89040538224abd49f81ea9a46
Manifest digest:sha256:3a66041eccd4e6822f2b78c99256d9ebe23538d3b81c7b765c6db995dcbcf53f
Size
86.93 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/erlang-otp:28-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/erlang-otp:28-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/erlang-otp@sha256:4984190af2ff144e88d498b41b36523f9c26a47918d5502e866f71d09c718b1e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/erlang-otp@sha256:c9575da0435faa13fd82207a845af503d836d557141cfc49b216bdc096f1a210 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/erlang-otp@sha256:420e0e68f53097dc8fea638ab870cdcf70d0313088aeab90bd75833f5e6b86ab |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/erlang-otp@sha256:3f45da6de0a90fe6a03ee2cea9d9eb40e33df17f53b80e22a115bfe9db0dad52 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/erlang-otp@sha256:cfa9e5e5821ae65062fbee5bd7cb0a7582e3fec9015ba6103b99b368bcbdd9f5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/erlang-otp@sha256:a73ccd476bd18e8a0d3d11f7d1990d7fdd889cdc77402bc70e72be8dffc7f582 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/erlang-otp@sha256:34b4e44d9ec47a422931a10930ff1adba08c7e2792b9b58150e57a94ed02b1f6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/erlang-otp@sha256:fb96d65a43d3c6192d609e7a3a5e7fc248db74844e332bac6b9b4d7929a1e1fe |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/erlang-otp@sha256:55635b9cea7508f728b5f393bc97f9a7dfd6cee1b28daaf7a962d1d553e8313a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/erlang-otp@sha256:0160994cd17a2de172d082cbe0acab9c75989113fdbda42bc121272f3f586bb7 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/erlang-otp@sha256:9533a9bf57d6ac3034f4daf8e6914af773b82a53013ab67e804f12cae3dcafdc |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/erlang-otp@sha256:4af7bcc59fcb605c75440caa0c42ab671343ebb047867fbeaba9a1d9a26de652 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/erlang-otp@sha256:8b9f475316ee2e4ab32783e70acce14e4fb36b58f7cb9083bd14d1defa968f6f |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/erlang-otp@sha256:f43a7dca80d5d8b59fa11d33374283e8af7b89366bf9163fc2b254947a3e9661 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/erlang-otp@sha256:2ad287c5e983bd28cb5276cfdf36347f46c35e6f63920a122a02c29f518ad6ac |