# secure container images

Published articles for secure container images.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Expanding Chainguard's Helm chart coverage and deepening user experiences

DevFeed: [Expanding Chainguard's Helm chart coverage and deepening user experiences](<https://devfeed.tech/articles/expanding-chainguard-s-helm-chart-coverage-and-deepening-user-experiences-13036.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/expanding-chainguards-helm-chart-coverage-and-deepening-user-experiences>)

Published: 2026-02-13T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [DevOps](<https://devfeed.tech/topics/devops.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [Security](<https://devfeed.tech/topics/security.md>), [SRE](<https://devfeed.tech/topics/sre.md>), [Deployment](<https://devfeed.tech/topics/deployment.md>), [YAML](<https://devfeed.tech/topics/yaml.md>)

Tags: [bitnami-alternative](<https://devfeed.tech/tags/bitnami-alternative.md>), [bitnami-helm-charts](<https://devfeed.tech/tags/bitnami-helm-charts.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-helm](<https://devfeed.tech/tags/chainguard-helm.md>), [chainguard-helm-charts](<https://devfeed.tech/tags/chainguard-helm-charts.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [devops](<https://devfeed.tech/tags/devops.md>), [helm](<https://devfeed.tech/tags/helm.md>), [helm-charts](<https://devfeed.tech/tags/helm-charts.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [provenance](<https://devfeed.tech/tags/provenance.md>), [secure-by-default](<https://devfeed.tech/tags/secure-by-default.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [security](<https://devfeed.tech/tags/security.md>), [sre](<https://devfeed.tech/tags/sre.md>), [yaml](<https://devfeed.tech/tags/yaml.md>)

### AI overview

Chainguard is expanding its Helm chart catalog to include community charts and improve the user experience. The charts are designed to work with Chainguard container images, reducing manual YAML configuration, troubleshooting, provenance checks, and security risks in Kubernetes deployments.

### Source excerpt

Chainguard's expanded Helm charts deliver signed, tested, secure-by-default deployments that eliminate YAML toil and simplify Kubernetes at scale.

## New Chainguard Academy Course: Getting Started with Chainguard's Dockerfile Converter

DevFeed: [New Chainguard Academy Course: Getting Started with Chainguard's Dockerfile Converter](<https://devfeed.tech/articles/new-chainguard-academy-course-getting-started-with-chainguard-s-dockerfile-converter-13169.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/new-chainguard-academy-course-getting-started-with-chainguards-dockerfile-converter>)

Published: 2025-07-25T00:00:00Z

Content type: release

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [dockerfile converter](<https://devfeed.tech/topics/dockerfile-converter.md>), [Dockerfile](<https://devfeed.tech/topics/dockerfile.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [chainguard containers](<https://devfeed.tech/topics/chainguard-containers.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [MCP Server](<https://devfeed.tech/topics/mcp-server.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-academy](<https://devfeed.tech/tags/chainguard-academy.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [command-line](<https://devfeed.tech/tags/command-line.md>), [containers](<https://devfeed.tech/tags/containers.md>), [course](<https://devfeed.tech/tags/course.md>), [dockerfile-converter](<https://devfeed.tech/tags/dockerfile-converter.md>), [dockerfiles](<https://devfeed.tech/tags/dockerfiles.md>), [getting-started](<https://devfeed.tech/tags/getting-started.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [zero-cve-containers](<https://devfeed.tech/tags/zero-cve-containers.md>)

### AI overview

Chainguard Academy has launched a hands-on course that teaches developers and DevOps teams how to use Chainguard's Dockerfile Converter to convert existing Dockerfiles into secure, minimal Chainguard container images. The course covers installation, Dockerfile instruction handling, customization, advanced usage, and best practices.

### Source excerpt

Discover how to use Chainguard's new Dockerfile Converter tool to close the gap between legacy Dockerfiles and secure containers in our new course.

## Trusted Container Images: A Better Way to Build and Deploy Software

DevFeed: [Trusted Container Images: A Better Way to Build and Deploy Software](<https://devfeed.tech/articles/trusted-container-images-a-better-way-to-build-and-deploy-software-13297.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/trusted-container-images-a-better-way-to-build-and-deploy-software>)

Published: 2025-06-11T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Docker Hardened Images](<https://devfeed.tech/topics/docker-hardened-images.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [Security](<https://devfeed.tech/topics/security.md>), [chainguard containers](<https://devfeed.tech/topics/chainguard-containers.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [buyers-guide](<https://devfeed.tech/tags/buyers-guide.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [chainguard-vms](<https://devfeed.tech/tags/chainguard-vms.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [open-source-artifacts](<https://devfeed.tech/tags/open-source-artifacts.md>), [secure-by-design](<https://devfeed.tech/tags/secure-by-design.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [secure-open-source-artifacts](<https://devfeed.tech/tags/secure-open-source-artifacts.md>), [security](<https://devfeed.tech/tags/security.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>)

### AI overview

Chainguard's Buyer's Guide presents trusted container images and other open source artifacts as a way for enterprise engineering and security teams to reduce maintenance work, address supply-chain risks, and simplify compliance. It highlights Chainguard Containers as minimal, hardened images continuously built from source.

### Source excerpt

Chainguard's Trusted Container Images and Open Source Artifacts Buyer's Guide helps you improve supply chain security and reduce costly engineering toil.

## ATO in a Box: Simplifying Compliance for Software Vendors with Chainguard and Ask Sage

DevFeed: [ATO in a Box: Simplifying Compliance for Software Vendors with Chainguard and Ask Sage](<https://devfeed.tech/articles/ato-in-a-box-simplifying-compliance-for-software-vendors-with-chainguard-and-ask-sage-12891.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/ato-in-a-box-simplifying-compliance-for-software-vendors-with-chainguard-and-ask-sage>)

Published: 2025-06-02T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Containers](<https://devfeed.tech/topics/containers.md>), [chainguard containers](<https://devfeed.tech/topics/chainguard-containers.md>), [Automation](<https://devfeed.tech/topics/automation.md>), [Generative AI](<https://devfeed.tech/topics/generative-ai.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ask-sage](<https://devfeed.tech/tags/ask-sage.md>), [ato](<https://devfeed.tech/tags/ato.md>), [ato-in-a-box](<https://devfeed.tech/tags/ato-in-a-box.md>), [authority-to-operate](<https://devfeed.tech/tags/authority-to-operate.md>), [automation](<https://devfeed.tech/tags/automation.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-customer](<https://devfeed.tech/tags/chainguard-customer.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [generative](<https://devfeed.tech/tags/generative.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [security](<https://devfeed.tech/tags/security.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [zero-cve-containers](<https://devfeed.tech/tags/zero-cve-containers.md>), [zero-cves](<https://devfeed.tech/tags/zero-cves.md>)

### AI overview

This article presents Ask Sage's ATO in a Box, built with Chainguard Containers, automation, and AI to simplify and accelerate the Authorization to Operate process for software vendors. It describes secure container images, automated documentation and evidence collection, risk assessments, and compliance-package generation for regulated government deployments.

### Source excerpt

Chainguard customer Ask Sage utilizes Chainguard Containers to build ATO in a Box, a solution utilizing automation to speed up the authority to operate process.

## Milestone: 1,000 Secure Container Images and Over 100 Work Years Saved

DevFeed: [Milestone: 1,000 Secure Container Images and Over 100 Work Years Saved](<https://devfeed.tech/articles/milestone-1-000-secure-container-images-and-over-100-work-years-saved-13159.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/milestone-1-000-secure-container-images-and-over-100-work-years-saved>)

Published: 2024-11-06T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [Security](<https://devfeed.tech/topics/security.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [distroless](<https://devfeed.tech/topics/distroless.md>), [Compiler](<https://devfeed.tech/topics/compiler.md>), [Software](<https://devfeed.tech/topics/software.md>), [Debian](<https://devfeed.tech/topics/debian.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [compiler](<https://devfeed.tech/tags/compiler.md>), [container](<https://devfeed.tech/tags/container.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [containers](<https://devfeed.tech/tags/containers.md>), [debian](<https://devfeed.tech/tags/debian.md>), [hardening](<https://devfeed.tech/tags/hardening.md>), [no-vulnerabilities](<https://devfeed.tech/tags/no-vulnerabilities.md>), [provenance](<https://devfeed.tech/tags/provenance.md>), [sboms](<https://devfeed.tech/tags/sboms.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [zero-cves](<https://devfeed.tech/tags/zero-cves.md>)

### AI overview

Chainguard announces that its catalog has reached 1,000 secure container images and has helped more than 100 enterprise customers remediate over 54,000 CVEs, saving 216,000 engineering hours. The article reflects on the company's three-year journey and its decision to build Chainguard Images from source to provide faster vulnerability patching, comprehensive SBOMs and provenance attestations, broad version support, and compiler hardening.

### Source excerpt

Chainguard now offers over 1,000 container images with zero CVEs in our Chainguard Images Directory. Discover how we got here, and how our images can help you.

## Mastering the "compliance end run" with Chainguard Images

DevFeed: [Mastering the "compliance end run" with Chainguard Images](<https://devfeed.tech/articles/mastering-the-compliance-end-run-with-chainguard-images-13148.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/mastering-the-compliance-end-run-with-chainguard-images>)

Published: 2024-07-30T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [vulnerability management](<https://devfeed.tech/topics/vulnerability-management.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [container](<https://devfeed.tech/tags/container.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [fedramp](<https://devfeed.tech/tags/fedramp.md>), [fedramp-rev-5](<https://devfeed.tech/tags/fedramp-rev-5.md>), [pci-dss](<https://devfeed.tech/tags/pci-dss.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [vulnerability-management](<https://devfeed.tech/tags/vulnerability-management.md>)

### AI overview

The article explains how the "compliance end run" shifts responsibility for software compliance to customers who run a vendor's stack in their own environments. It highlights the resulting vulnerability-management obligations under PCI DSS v4 and FedRAMP Rev 5, and presents Chainguard Images as a minimal, secure starting point for reducing vulnerabilities and meeting stringent compliance requirements.

### Source excerpt

Learn how to use Chainguard Images to streamline compliance and avoid the "compliance end run" that slows down sales and creates friction with customers.

## How to transition to secure container images with new migration guides

DevFeed: [How to transition to secure container images with new migration guides](<https://devfeed.tech/articles/how-to-transition-to-secure-container-images-with-new-migration-guides-13096.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/how-to-transition-to-secure-container-images-with-new-migration-guides>)

Published: 2024-05-22T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [migration](<https://devfeed.tech/topics/migration.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [container-security](<https://devfeed.tech/topics/container-security.md>), [APK](<https://devfeed.tech/topics/apk.md>), [Dockerfile](<https://devfeed.tech/topics/dockerfile.md>), [Package manager](<https://devfeed.tech/topics/package-manager.md>), [Bash](<https://devfeed.tech/topics/bash.md>), [Zsh](<https://devfeed.tech/topics/zsh.md>), [Debian](<https://devfeed.tech/topics/debian.md>)

Tags: [and-best-practices](<https://devfeed.tech/tags/and-best-practices.md>), [apk](<https://devfeed.tech/tags/apk.md>), [base-images](<https://devfeed.tech/tags/base-images.md>), [bash](<https://devfeed.tech/tags/bash.md>), [best-practices](<https://devfeed.tech/tags/best-practices.md>), [build](<https://devfeed.tech/tags/build.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container](<https://devfeed.tech/tags/container.md>), [container-based-application](<https://devfeed.tech/tags/container-based-application.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [container-security](<https://devfeed.tech/tags/container-security.md>), [container-security-strategy](<https://devfeed.tech/tags/container-security-strategy.md>), [cves](<https://devfeed.tech/tags/cves.md>), [debian](<https://devfeed.tech/tags/debian.md>), [dependencies](<https://devfeed.tech/tags/dependencies.md>), [docker-hub-image](<https://devfeed.tech/tags/docker-hub-image.md>), [dockerfiles](<https://devfeed.tech/tags/dockerfiles.md>), [guides](<https://devfeed.tech/tags/guides.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [image-migration](<https://devfeed.tech/tags/image-migration.md>), [migration](<https://devfeed.tech/tags/migration.md>), [migration-guides](<https://devfeed.tech/tags/migration-guides.md>), [python-image](<https://devfeed.tech/tags/python-image.md>), [secure-container-image](<https://devfeed.tech/tags/secure-container-image.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>)

### AI overview

This guide explains how to migrate container images to Chainguard Images for smaller image sizes, fewer vulnerabilities, and continuous maintenance. It covers using -dev images for shells and package managers, installing bash or zsh when needed, searching for packages with apk, and adapting Dockerfiles and entrypoint scripts.

### Source excerpt

Struggling to adopt secure container images? Our new migration guides provide step-by-step instructions and best practices for a smooth transition.

## Reimagining the Linux distro with Wolfi

DevFeed: [Reimagining the Linux distro with Wolfi](<https://devfeed.tech/articles/reimagining-the-linux-distro-with-wolfi-13209.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/reimagining-the-linux-distro-with-wolfi>)

Published: 2024-02-21T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Linux](<https://devfeed.tech/topics/linux.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [container-security](<https://devfeed.tech/topics/container-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Package Management](<https://devfeed.tech/topics/package-management.md>), [APK](<https://devfeed.tech/topics/apk.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [apk](<https://devfeed.tech/tags/apk.md>), [apko](<https://devfeed.tech/tags/apko.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container-security](<https://devfeed.tech/tags/container-security.md>), [cve](<https://devfeed.tech/tags/cve.md>), [linux](<https://devfeed.tech/tags/linux.md>), [melange](<https://devfeed.tech/tags/melange.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [package-management](<https://devfeed.tech/tags/package-management.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [security](<https://devfeed.tech/tags/security.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [wolfi](<https://devfeed.tech/tags/wolfi.md>)

### AI overview

The article explains why Chainguard created Wolfi, a minimal Linux distribution designed for modern container use. It describes the roles of Melange for building APK packages and Apko for assembling reproducible container images, along with Wolfi's security advisory and vulnerability-management capabilities.

### Source excerpt

Discover Wolfi: Chainguard's answer to modern container security, creating minimal, secure Linux distributions for today's needs.

## Chainguard raises $61 million series B round as enterprises move to fortify open source software

DevFeed: [Chainguard raises $61 million series B round as enterprises move to fortify open source software](<https://devfeed.tech/articles/chainguard-raises-61-million-series-b-round-as-enterprises-move-to-fortify-open-source-software-12978.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/chainguard-raises-61-million-series-b-round-as-enterprises-move-to-fortify-open-source-software>)

Published: 2023-11-01T00:00:00Z

Content type: news

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard](<https://devfeed.tech/topics/chainguard.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [funding](<https://devfeed.tech/tags/funding.md>), [fundraising](<https://devfeed.tech/tags/fundraising.md>), [safe-source-for-open-source](<https://devfeed.tech/tags/safe-source-for-open-source.md>), [sboms](<https://devfeed.tech/tags/sboms.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [series-b](<https://devfeed.tech/tags/series-b.md>), [software-signatures](<https://devfeed.tech/tags/software-signatures.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [spark-capital](<https://devfeed.tech/tags/spark-capital.md>)

### AI overview

Chainguard announced a $61 million Series B funding round led by Spark Capital, bringing total fundraising to $116 million. The company says its Chainguard Images solution is expanding among Fortune 500 companies and technology providers, with secure container images, vulnerability-status tracking, SBOMs, and software signatures.

### Source excerpt

Series B funding elevates Chainguard's capabilities in pioneering next-gen software security technologies.

## Building Chainguard's container image registry

DevFeed: [Building Chainguard's container image registry](<https://devfeed.tech/articles/building-chainguard-s-container-image-registry-12903.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/building-chainguards-container-image-registry>)

Published: 2023-05-23T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>), [OpenID connect (OIDC)](<https://devfeed.tech/topics/oidc.md>), [Cloudflare](<https://devfeed.tech/topics/cloudflare.md>), [GitHub](<https://devfeed.tech/topics/github.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-image-registry](<https://devfeed.tech/tags/chainguard-image-registry.md>), [cloudflare](<https://devfeed.tech/tags/cloudflare.md>), [container](<https://devfeed.tech/tags/container.md>), [container-image](<https://devfeed.tech/tags/container-image.md>), [container-image-registry](<https://devfeed.tech/tags/container-image-registry.md>), [github-actions](<https://devfeed.tech/tags/github-actions.md>), [github-container-registry](<https://devfeed.tech/tags/github-container-registry.md>), [hardened-image](<https://devfeed.tech/tags/hardened-image.md>), [minimal-image](<https://devfeed.tech/tags/minimal-image.md>), [oidc](<https://devfeed.tech/tags/oidc.md>), [registry](<https://devfeed.tech/tags/registry.md>), [secure-by-design](<https://devfeed.tech/tags/secure-by-design.md>), [secure-container-images](<https://devfeed.tech/tags/secure-container-images.md>), [secure-images](<https://devfeed.tech/tags/secure-images.md>), [secure-minimal-image](<https://devfeed.tech/tags/secure-minimal-image.md>), [security](<https://devfeed.tech/tags/security.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>)

### AI overview

Chainguard explains why it built its own passwordless container image registry to improve security, control distribution, and manage costs. The registry is built on Cloudflare R2, uses short-lived OIDC credentials, and allows GitHub Actions workflows--not individual employees--to push images.

### Source excerpt

We built a passwordless container image registry with a focus on security to sustain the foundation for ongoing product growth & feature additions for our users.