“Arch Linux now publishes bit-for-bit reproducible Docker images.”

Reproducible builds are how you verify that the binary you run came from the source you read. Arch shipping reproducible images is a milestone that took a decade of unglamorous work by the reproducible-builds project. The big distros should follow.