dhi.io/erlang-otp
29.1, 29.1-debian, 29.1-debian13
sha256:af7eef2fbe14f35fcbb3556ca9ccf0c64ca7237af463f9af42c1e28b28920e2f
Manifest digest:sha256:fcd858ac5efd7f209435951a50889ce42e5fc250424ca20894d84c14ab2ad34c
Size
77.08 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/erlang-otp:29.12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/erlang-otp:29.1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/erlang-otp@sha256:2c5ef7e2156e5554da1c5a22383110980b46826492c078c199eecd4582ce422c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/erlang-otp@sha256:1b1c3b28c00beaba7ae3dda0f2d1f86c71910ee117c84b08c66b248381c07a3f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/erlang-otp@sha256:b2392b95e313b3b304c8178afc3dac03f6b7038fc2bdbb97bb97a6a3ef9ec1a5 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/erlang-otp@sha256:4903863e7315a2150478903121f8a24ae1f59cbc792c2be38b9b4c9b355b4c36 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/erlang-otp@sha256:9264a325aa05b17343cd218d8ed60a0bca7e6018e9a8c7658d53ab73e0a9bbd7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/erlang-otp@sha256:03c1a1f29866d092a9667f21b64184fa2410d78f478a122a68a9053967a44fe8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/erlang-otp@sha256:002474ee860c05ee5ff1e17f031a3e3c26da4fc6273e6da22cb2c413028ca4d0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/erlang-otp@sha256:220e64d3b4a6c6d535aca8df6bb86fe57427bb0f761b5abba428efb250b3a6ff |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/erlang-otp@sha256:efb8cb0603242260e810edca81ee4a026e4076206172d7abfb124cee2260c32a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/erlang-otp@sha256:f7eb4a39174b5e21079bfdc587a7856b3ecea0d8e626ad5ec42d4ffb8bb1ae94 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/erlang-otp@sha256:5fb41529e5051493fe1cdfd3a9edc33362bd47bf4b79107545c4523aebad6bfa |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/erlang-otp@sha256:be59a366982bc5a61f129acdbe26dfb2cc0359ad7288daef98e6949267324b45 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/erlang-otp@sha256:a5c7c5ba46d8bf03de6d630e43e0dc2fc938ada560b6245a654646bad6a86b1e |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/erlang-otp@sha256:62436eda5eca17872836dc6070103b588b19b14b6eddec0cd6fd63977a9920ec |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/erlang-otp@sha256:b2c843a61d6940703ebfb827d511fa50be6548ce61cfd7453c65393a40f6bf03 |