It might be uses to verify the images in a registry such as Docker Hub with a provided list of image hashes and tags. This can be used for audit purposes to make sure that each tag is pointing to the hash, and this the image, we expect it to.