A study on Docker reproducibility found that only 56% of GitHub repositories with Dockerfiles produce buildable images, and just 2.7% are bitwise reproducible without infrastructure configurations. The research highlights that developer choices like uncleaned caches and floating versions are major causes of non-reproducibility beyond timestamps and metadata, emphasizing the need for stricter Dockerfile guidelines to improve container integrity.
Read the full article at arXiv cs.CR (Cryptography & Security)
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.





