# chainguard open source

Published articles for chainguard open source.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## The Maintainer of Last Resort

DevFeed: [The Maintainer of Last Resort](<https://devfeed.tech/articles/the-maintainer-of-last-resort-13262.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/the-maintainer-of-last-resort>)

Published: 2026-06-22T00:00:00Z

Content type: opinion

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Open Source](<https://devfeed.tech/topics/open-source.md>), [Maintainers](<https://devfeed.tech/topics/maintainers.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Software](<https://devfeed.tech/topics/software.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>)

Tags: [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [chainguard-open-source](<https://devfeed.tech/tags/chainguard-open-source.md>), [emertioss](<https://devfeed.tech/tags/emertioss.md>), [maintainers](<https://devfeed.tech/tags/maintainers.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [open-source-maintainer](<https://devfeed.tech/tags/open-source-maintainer.md>), [oss](<https://devfeed.tech/tags/oss.md>), [providers](<https://devfeed.tech/tags/providers.md>), [software](<https://devfeed.tech/tags/software.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Chainguard proposes a Maintainer of Last Resort as a neutral backstop for abandoned open source projects. The model would fork vulnerable packages, apply fixes, publish verifiable builds, and handle future vulnerability disclosures when upstream maintainers cannot respond in time.

### Source excerpt

Chainguard proposes a Maintainer of Last Resort to patch abandoned open source projects, publish trusted builds, and keep critical software secure.

## Fork yeah: We're adding ten new open source projects to EmeritOSS

DevFeed: [Fork yeah: We're adding ten new open source projects to EmeritOSS](<https://devfeed.tech/articles/fork-yeah-we-re-adding-ten-new-open-source-projects-to-emeritoss-13049.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/fork-yeah-were-adding-ten-new-open-source-projects-to-emeritoss>)

Published: 2026-01-15T00:00:00Z

Content type: news

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Open Source](<https://devfeed.tech/topics/open-source.md>), [Prometheus](<https://devfeed.tech/topics/prometheus.md>), [Apache Cassandra](<https://devfeed.tech/topics/cassandra.md>), [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [observability](<https://devfeed.tech/topics/observability.md>), [Grafana](<https://devfeed.tech/topics/grafana.md>), [data-processing](<https://devfeed.tech/topics/data-processing.md>)

Tags: [amazon-s3](<https://devfeed.tech/tags/amazon-s3.md>), [cassandra](<https://devfeed.tech/tags/cassandra.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-emeritoss](<https://devfeed.tech/tags/chainguard-emeritoss.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [chainguard-open-source](<https://devfeed.tech/tags/chainguard-open-source.md>), [dashboards](<https://devfeed.tech/tags/dashboards.md>), [maintenance](<https://devfeed.tech/tags/maintenance.md>), [minio](<https://devfeed.tech/tags/minio.md>), [observability](<https://devfeed.tech/tags/observability.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [open-source-chainguard-images](<https://devfeed.tech/tags/open-source-chainguard-images.md>), [pgcat](<https://devfeed.tech/tags/pgcat.md>), [prometheus](<https://devfeed.tech/tags/prometheus.md>), [security](<https://devfeed.tech/tags/security.md>), [source](<https://devfeed.tech/tags/source.md>)

### AI overview

Chainguard announces ten additional open source projects joining EmeritOSS, a program intended to provide long-term maintenance and stability for mature projects. The supplied text highlights MinIO, Prometheus-related exporters, and integrations involving Apache Cassandra and RabbitMQ, covering object storage, monitoring, metrics, and observability.

### Source excerpt

We added 10 open source projects to EmeritOSS--including MinIO, Prometheus exporters, and PgCat--to provide long-term, stability-focused maintenance and security.

## Fork Yeah: We're keeping ingress-nginx alive

DevFeed: [Fork Yeah: We're keeping ingress-nginx alive](<https://devfeed.tech/articles/fork-yeah-we-re-keeping-ingress-nginx-alive-13135.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/keeping-ingress-nginx-alive>)

Published: 2025-12-22T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [nginx](<https://devfeed.tech/topics/nginx.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Security](<https://devfeed.tech/topics/security.md>), [migration](<https://devfeed.tech/topics/migration.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Maintainers](<https://devfeed.tech/topics/maintainers.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [GitHub](<https://devfeed.tech/topics/github.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-emeritoss](<https://devfeed.tech/tags/chainguard-emeritoss.md>), [chainguard-open-source](<https://devfeed.tech/tags/chainguard-open-source.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [github](<https://devfeed.tech/tags/github.md>), [ingress](<https://devfeed.tech/tags/ingress.md>), [ingress-nginx](<https://devfeed.tech/tags/ingress-nginx.md>), [ingress-nginx-retirement](<https://devfeed.tech/tags/ingress-nginx-retirement.md>), [kubeapps](<https://devfeed.tech/tags/kubeapps.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [maintainers](<https://devfeed.tech/tags/maintainers.md>), [migration](<https://devfeed.tech/tags/migration.md>), [nginx](<https://devfeed.tech/tags/nginx.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

Chainguard is maintaining a fork of ingress-nginx through its EmeritOSS program after the upstream project announced retirement and planned archiving in March 2026. It offers CVE-free container images, remediation SLAs, and FIPS versions while users evaluate migration options such as the Gateway API or other ingress controllers.

### Source excerpt

Chainguard is keeping ingress-nginx alive through EmeritOSS, providing security-focused maintenance so teams can migrate safely without risk.

## Introducing Chainguard EmeritOSS: Sustainable stewardship for mature open source

DevFeed: [Introducing Chainguard EmeritOSS: Sustainable stewardship for mature open source](<https://devfeed.tech/articles/introducing-chainguard-emeritoss-sustainable-stewardship-for-mature-open-source-13110.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/introducing-chainguard-emeritoss>)

Published: 2025-12-16T00:00:00Z

Content type: release

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Open Source](<https://devfeed.tech/topics/open-source.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [maintenance](<https://devfeed.tech/topics/maintenance.md>), [ingress-nginx](<https://devfeed.tech/topics/ingress-nginx.md>), [kaniko](<https://devfeed.tech/topics/kaniko.md>), [kubeapps](<https://devfeed.tech/topics/kubeapps.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-containers-open-source](<https://devfeed.tech/tags/chainguard-containers-open-source.md>), [chainguard-emeritoss](<https://devfeed.tech/tags/chainguard-emeritoss.md>), [chainguard-open-source](<https://devfeed.tech/tags/chainguard-open-source.md>), [emeritoss](<https://devfeed.tech/tags/emeritoss.md>), [ingress-nginx](<https://devfeed.tech/tags/ingress-nginx.md>), [kaniko](<https://devfeed.tech/tags/kaniko.md>), [kubeapps](<https://devfeed.tech/tags/kubeapps.md>), [maintenance](<https://devfeed.tech/tags/maintenance.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [open-source-maintenance](<https://devfeed.tech/tags/open-source-maintenance.md>)

### AI overview

Chainguard announces EmeritOSS, a program for preserving and securely maintaining mature, unmaintained open source projects. The program starts with Kaniko, Kubeapps, and ingress-nginx.

### Source excerpt

EmeritOSS is a stability-focused program that preserves and secures mature, unmaintained open source projects, starting with Kaniko, Kubeapps, and ingress-nginx.

## Why building from source matters

DevFeed: [Why building from source matters](<https://devfeed.tech/articles/why-building-from-source-matters-13326.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/why-building-from-source-matters>)

Published: 2025-11-13T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard](<https://devfeed.tech/topics/chainguard.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Software](<https://devfeed.tech/topics/software.md>), [Library](<https://devfeed.tech/topics/library.md>), [Compiler](<https://devfeed.tech/topics/compiler.md>), [virtual machines](<https://devfeed.tech/topics/virtual-machines.md>)

Tags: [binaries](<https://devfeed.tech/tags/binaries.md>), [building](<https://devfeed.tech/tags/building.md>), [building-from-source-approach](<https://devfeed.tech/tags/building-from-source-approach.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [chainguard-open-source](<https://devfeed.tech/tags/chainguard-open-source.md>), [chainguard-os](<https://devfeed.tech/tags/chainguard-os.md>), [chainguard-vms](<https://devfeed.tech/tags/chainguard-vms.md>), [dependency](<https://devfeed.tech/tags/dependency.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [sealed](<https://devfeed.tech/tags/sealed.md>), [security](<https://devfeed.tech/tags/security.md>), [signing](<https://devfeed.tech/tags/signing.md>), [source](<https://devfeed.tech/tags/source.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

Chainguard explains why building software from upstream source code can improve control and traceability in software supply chains. The article describes compiling packages and dependencies in a hermetic, network-isolated environment, then signing and attesting the resulting artifacts.

### Source excerpt

Chainguard SVP of Engineering Dustin Kirkland discusses why Chainguard builds every package, library, and image directly from source and why the approach works.