8000 GitHub - chainguard-images/template: Template repository for new images
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
This repository was archived by the owner on Jan 26, 2024. It is now read-only.

chainguard-images/template

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 

Repository files navigation

Chainguard Images Template

This repo provides a basic template for a Wolfi-based image configured using apko.

After creating your own repo from this template, edit apko.yaml to add or remove whatever packages you need.

The template includes two GitHub Actions workflows:

  • run a presubmit build when a pull request is opened
  • publish a new image when changes are pushed to main.
    • Images are pushed to ghcr.io/$ORG/$REPO, tagged with the date the image was published (e.g., :20230103).
    • Images are signed using the GitHub Actions' workload identity (cosign verify <image>).
    • Images have an SBOM attached (cosign download sbom <image>).
    • Images are scanned for vulnerabilities using Trivy, and signed vulnerability attestations are attached (cosign download attestation <image>). You can enable scanning with Grype and Snyk as well.
    • Images are also rebuilt nightly to pick up Wolfi package updates.

About

Template repository for new images

Resources

License

Security policy

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors 12

0