dhi.io/erlang-otp
27-alpine-dev, 27-alpine3.24-dev, 27.3-alpine-dev, 27.3-alpine3.24-dev
sha256:283b6e5fbf61777f3b1859a17259eea4b19314b3bd9633dac5ffbc4f43d7877f
Manifest digest:sha256:bc5f909d5fae4b1b51e14b783c51cc09dfc0bc59c92e1ddce34d9862ee27402b
Size
38.06 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/erlang-otp:27-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/erlang-otp:27-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/erlang-otp@sha256:7991a128341a6b14024bb1ffed1aa2677d131a77ea93c05a62ac24fc6c03c149 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/erlang-otp@sha256:f75e79adcad04694c115fd02f128ef58db0cedaca0b8d97e1e6a76cb823ad0e1 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/erlang-otp@sha256:674fa2be4a9e5f1e6a59a9f846bcaf6d5647d7819d37561784b40278e985a68e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/erlang-otp@sha256:039f027dd10e18602891cf84dfaf5f736fb368ed6c91075494b9b470860fdaeb |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/erlang-otp@sha256:e2de09c08857118312a6ae55969c31e705c706a2bbbc522d34e9d27930542be1 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/erlang-otp@sha256:e7dc3a7fd79b90d894e6e95d870deb3bb1b310d40d6ead7528ec5a864620874e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/erlang-otp@sha256:7aebda7950087db437a2088542311e1b0e5904f8317eb7f59da997d20998350d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/erlang-otp@sha256:41bdc0e6b5c2af62b2504bc0dec217a923817fdef7606e997e05de1a71312206 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/erlang-otp@sha256:2a742650b4906512eeedfcf3b8d9f1c6f0504533e3305ba6e3116ed9750fc5b4 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/erlang-otp@sha256:afb9490fb7b1fc643a0de17b025d2a732fe9ed67996760f6be84da9cc5b53863 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/erlang-otp@sha256:57c5574b8e87c2b9ebfd9f290437e85fe7f27ae6eae2fc2cdb1624e0264a1c42 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/erlang-otp@sha256:6a58ea279a6e1f075716e0f5fb82dcff43c5f5bf7b6c5afac35103df4aa6c0ff |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/erlang-otp@sha256:1d2bc0d6d88c663d55f20cf85ccccf57ad68110a3b1253bc8055444fb39d0c45 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/erlang-otp@sha256:bfad72b0fdc572732ec8348fca745691882c3af6bc074490c10287105f4ea2ff |