
Docker image history modification - why you can't trust `docker history`
I recently came across Staying safe with .NET containers on Hacker News. It’s an excellent post that goes into how the .NET Docker image publishing team thinks about:
* The pedigree and provenance of the .NET Docker images they publish
* The process by which they build and publish the images