comments about rule 10 "Regularly use and rebuild containers"
For me this clearly seems to be a damage-limiting measure, acknowledging that the other 9 rules don’t ensure anything. This rule only helps to detect when the reproducibility got lost but it might be hard to retroactively fix it, for example if “existing images” (to base on) do not exist any longer (good example is using codehaus.org as package repository, once upon a time a major repository, but simply does not exist anymore).