Signing and Trust

1 / 10

Attestations say what an image contains and where it came from. Nothing so far establishes that the attestation is genuine — an attacker who can push to your registry can push an image with a lovely SBOM describing something entirely different.

Signatures close that gap, and Docker's own answer changed recently enough that most documentation is wrong about it.

Finish →