An in-depth look at SBOM and build provenance Docker image attestation created by Docker/BuildKit, and the major problem of lacking verifiability.| AugmentedMind.de
SBOM build attestations describe the contents of your image, and the packages used to build it.| Docker Documentation