dhi.io/erlang-otp
28-alpine3.23, 28.5-alpine3.23
sha256:c8d552d1608b45b0fba0039ed171b6ac0284850754ffd71b32e2b8cb6ae246ab
Manifest digest:sha256:b8afa34a2da7013d9cd5416edde12a840b32aa1d4c599636cb2b7d68caf73bc4
Size
36.89 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/erlang-otp:28-alpine3.232. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/erlang-otp:28-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/erlang-otp@sha256:724e9c873f4ff93497f940c250248ad4bb55cb6b6a64ed8b85441306a2469d97 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/erlang-otp@sha256:be8e466a6d1dcf86a771c40d92eb46f9c95c06c9f17880cb3db7390816a9910c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/erlang-otp@sha256:200308cabc888060423196adb5b1608fe6ae2ef1d4d37b16efa4595e9a1a85b4 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/erlang-otp@sha256:4c88c7b8f05b4591375445578fa4148d3eca60867be95168c81cb5b2837dc0ae |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/erlang-otp@sha256:d61d7eb80c7099b966d4d10870c6c44faca9c24756ab850863bc91b0796e4ffe |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/erlang-otp@sha256:3f3ac0d5dcac61b8283107508380032500146bc1ad308cc0b9f73f1d9cd6b556 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/erlang-otp@sha256:eff375e9f4841af47716d390a6b19d4ce6760754ed007c688398519a9a8ce4e7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/erlang-otp@sha256:05c71d2ca708df203f191f7199d4d62e7754e70a9d2e1b15df803e92bbb90009 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/erlang-otp@sha256:cf94ca6daa7c090d3bc0e607fe6c62a0a70eaf00a78c0713857e5bd4ea933fff |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/erlang-otp@sha256:ceedd6429d2e99ac21d57e7bee9601aba41f7ba6dd63082f1bdb3d2e39441d47 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/erlang-otp@sha256:347dddfe8af58fbb4d14217a4aa5b3692a478b16cba2f3971c6d731f089f34af |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/erlang-otp@sha256:25a71b919859f555c6f4ed0b72e30165449cd531d7ca9f77b45912720bc44ab2 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/erlang-otp@sha256:e7d6de700fa44a3bd108d78eac6a1152bfa914db9aca30023fe0b7334022ada0 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/erlang-otp@sha256:f6b3063c4c91649bd29791b751955098d0d2d71c527361e6c54719edc2afe0a7 |