
Introducing Chainguard Actions: CI/CD workflows you can trust
Chainguard Actions is a securely rebuilt catalog of GitHub Actions and similar CI/CD workflows built and continuously maintained in the Chainguard Factory.
2432 articles

Chainguard Actions is a securely rebuilt catalog of GitHub Actions and similar CI/CD workflows built and continuously maintained in the Chainguard Factory.

Chainguard Agent Skills is a continuously maintained catalog of hardened AI agent skills.

Chainguard Catalog Starter is a new free offering that gives developers instant access to trusted container images from the industry’s most comprehensive catalog

Chainguard Commercial Builds is a new partnership program with commercial and open source software providers to package software using the Chainguard Factory.

Chainguard OS Packages are enterprise-grade, zero-CVE packages and base images built and continuously maintained in the Chainguard Factory.

Chainguard Repository is a single, Chainguard-managed experience for pulling secure-by-default artifacts with built-in, configurable policy enforcement.

Guardener is an AI-native agent that accelerates engineering teams’ adoption of trusted open source artifacts across software development and deployment.

Chainguard is the first and only to FIPS-validate OpenSSL 3.4, owning the validated cryptographic module that powers our FIPS images.

Chainguard delivers the FIPS-validated Apache Kafka images, enabling secure event streaming for FedRAMP and regulated environments.

AI coding assistants are resurrecting millions of abandoned open source packages. Learn how LLMs expose the “Dormant Majority” and why package health intelligence is critical for supply chain security.

The Chrome Secure Web and Networking Team has announced a new program aimed at developing quantum-resistant HTTPS certificates, specifically using Merkle Tree Certificates (MTCs). This initiative follows the formation of the IETF working group PLANTS to address the challenges of quantum-resistant cryptography in TLS connections. MTCs promise to enhance performance by minimizing the size of authentication data while maintaining transparency and security. Chrome is currently conducting feasibility studies with Cloudflare and plans a phased rollout over the next few years, ultimately establishing a new Chrome Quantum-resistant Root Store (CQRS). This effort aims to secure the web against future quantum threats while supporting existing CA partnerships and traditional certificates in private contexts.

Backporting Python CVE fixes is complex and risky. Chainguard Libraries delivers source-built, tested, and verified patched packages you can trust.