Chainguard Reviews

Hear directly from Chainguard users

Real reviews from the engineers and security professionals who are using Chainguard to build software efficiently and securely.

What sets Chainguard apart is their commitment to transparency and compliance, making them a top choice for organisations with high security and regulatory requirements. If you are looking to build a secure, resilient container strategy, Changuard is worth serious consideration.

Naweed J.
Lead Engineer - Platform
Enterprise (> 1000 emp.)

I’ve been down the DIY path twice on fairly complex cloud based missions. There’s a reason we went with Chainguard!

Andrew Cunjé
CISO @ Appian

Chainguard has changed the game when it comes to remediating vulns in images.

Dan E.
Senior Cybersecurity Engineer
Enterprise (> 1000 emp.)

It’s been a good 2 weeks to be a @chainguard_dev customer 😎

Joe Christian
@Jo3Ram

By integrating minimal harden docker images from Chainguard with the user-friendly IDP hashtag #Backstage, the outcomes for your developers are truly remarkable (we're talking 100s of vulnerabilities per image gone 💨). ❤️ 🧨

Ben Burbank
Director of Developer Platform @ American Airlines

For anyone wrestling with FedRAMP, Chainguard isn't just a nice-to-have – it's your secret weapon. They make the impossible possible in managing truly secure Docker images. Don't even think about FedRAMP without putting Chainguard on your shortlist!

Social profile image for Eldad Stinbook.
Eldad Stinbook
DevOps | DevSecOps | Cloud Engineering

Anduril is redefining what defense contractors look like, in part by implementing commercial technology and moving at the pace of relevance. Doing so while remaining compliant in a highly regulated environment is extremely challenging. Chainguard [Containers] help us deliver on this mission with hardened container images that lead the market in secure software development.

Joe McCaffrey
CISO

Chainguard has allowed us to develop at speed and scale allowing us to focus on features more than the development overhead, especially in mitigating CVEs. That said, the team that we interact with is the best part of Chainguard. Responsive, intelligent, and customer obsessed is the main reason we value and continue our relationship. Couldn't be happier.

Verified User in Defense & Space
Enterprise (> 1000 emp.)

At Snap, security is critical to maintaining the trust of our users and ensuring the integrity of our application. Chainguard's secure container images help to drive down vulnerabilities and provide us with a solid technology foundation. This, in turn, enables us to focus on scaling and innovating rapidly to deliver new features and experiences for our users,

Shrikant Pandhare
Engineering Manager, Security

I default nowadays to using @chainguard images with multi-stage builds for python. these base images are not only lightweight but don't have the vulns

Profile image of Abhay Bhargav.
Abhay Bhargav
@abhaybhargav

Chainguard Containers have already helped us ensure that our containerized analytics workloads are built and run securely by default. Now, we're excited about the potential of Chainguard Libraries for Python to further strengthen our software supply chain by mitigating the risks posed by unverified dependencies and malware in the Python ecosystem.

Carsten Skov
Senior DevOps Engineer

It was so easy to migrate our service and amazing to instantly see the reduction of vulnerabilities.

Wealthsimple Team

This is huge. Finally a vendor that provides pre STIG'd images that both supports and maintains them. The overhead that companies incur for this work is massive. Often its duplicated across product teams for the same applications and containers.

Rob Gil
Security Architecture @ Okta

Our partnership with Chainguard enabled us to meet or exceed the rigorous standards required in highly regulated industries and government sectors where we serve our customers. By reducing the burden of patching and hardening associated with managing supply chain risks, we can increase our developers' focus on driving innovation in support of our customers' missions.

Andrew Cunjé
CISO

I recently gave the cgr.dev/chainguard/nginx container image a try, here are my learnings! Towards having more secure container images!

Social media profile image for Mathieu Benoit.
Mathieu Benoit
Customer Success Engineer @ Humanitec

I know @chainguard_dev images aren't magic, but hard work.. but it's the closest thing to a magic wand for CVEs I've seen

Profile image of Ian Zink.
Ian Zink
@z4ce

Putting #security and minimalism first - I migrated Luminous Onion from a vulnerable base image to Chainguard's image built with #Wolfi dropping the vulnerabilities to a manageable 0 count! All with only 2 lines of code changed. Yes, it's really that easy! Highly recommend checking out Chainguard images for your projects.

Profile image of Zachary Karpinski.
Zachary Karpinski
Senior Software Engineer @ Capital One

Did I mention that FilterBox uses @chainguard_dev images so it’s secure af (that’s a technical term)

Social media profile image for Kit Merker.
Kit Merker
@KitMerker

Chainguard already helps us reduce our attack surface while giving our teams confidence in what they're shipping. We see promise in Chainguard Libraries for Python to ensure developers can build securely from the very first line of code.

Joe Christian
Sr Engineering Manager, Application Security

Migrating from our team's existing images to chainguard only took about a day, and now using chainguard images totally saves us from having to deal with these CVEs, and lets us work on actual business problems, and not have to try to figure out how to patch some obscure lib install.

Ben C.
Senior Software Engineer
Enterprise (> 1000 emp.)

Another monthly vulnerability report to FedRAMP and DoD IL5 for our ATO Continuous Monitoring and another month with 0 FRICKING CVEs! Who can top that?I know no AI product that has 0 CVE in their entire stack. Who even remotely competes with Ask Sage, Inc.? Nobody. Thanks Chainguard for making this happen with us!

Profile image for Chainguard user.
Nicolas M. Chaillan
Founder & CEO, Ask Sage

Chainguard sets itself apart by providing supply chain security through purpose-built packages in their registry, making it clear that while competitors might still be playing catch-up in the minor leagues, Chainguard is clearly in a league of its own, setting the standard for supply chain security.

Profile pic of Karl H.
Karl H.
Senior Principal Architect
Enterprise (> 1000 emp.)

Chainguard is truly doing things differently. They're building an incredible team and really disrupting 40+ year old assumptions on how to manage and deploy software. I've never been more optimistic that change is coming. As Dan Lorenc would say, "Buckle Up!".

Rob Gil
Security Architecture @ Okta

Since adopting Chainguard the number of vulnerabilities our scanning tools have found in our services has dramatically decreased.

Verified User in Banking
Enterprise (> 1000 emp.)

It has been amazing to work with Chainguard, I never would have believed that getting to a 0 CVE image would be so easy (heck, I wouldn't have believed it was even possible) before we introduced Chainguard into our workflow.

Mackenzie Jackson
Developer and Security Advocate

Chainguard support is excellent and fast. Chainguard images are lean, secure and easy to integrate. Updates are frequent and easy to implement. Users can pull any supported images with up-to-date features for frequency of use.

Verified User in Hospital & Health Care
Enterprise (> 1000 emp.)

With Chainguard STIG-ready Images, our platform engineers are able to save months of engineering effort when it comes to audit and compliance readiness. A process that was once grueling and toilsome now just takes a couple of minutes.

Social media profile image for Shaun McDonnell.
Shaun McDonnell
Director of Platform Engineering
Logo of Chainguard customer Shift5.

Looking for the best distroless images on the market? Chainguard is the way to go!

Michael W.
Cyber Security Consultant (AppSec Area)
Enterprise (> 1000 emp.)

With Chainguard, we're able to meet and maintain stringent compliance requirements for software vulnerabilities, and their Images product seamlessly integrates within our developer workflows, delivering instant results, and secure outcomes.

Sandeep Johri
CEO

it means you 100% have vulnerabilities, that's why you use @chainguard_dev 's hardened images with ZERO vulnerabilities

Jan Schwoebel
@MindTheVirt

I don’t usually post unless it’s worth your time — but if you’re in dev or security and not checking out Chainguard for your container images, you’re missing out. Seriously impressive stuff.

Aaron Ayerdis
Senior Cloud Security Engineer @ Dexcom

The gold star vendor: sales, onboarding implementation, support, and product

Charlie G.
SRE Manager
Mid-Market (51-1000 emp.)

Guys. Chainguard is worth every penny. I got to go on a date with my wife last night because I didn't have to remove CVEs from my container images.

Social media profile image for Shaun McDonnell.
Shaun McDonnell
@McShauno

Chainguard Images have been a transformative addition to our software supply chain strategy. The minimal, hardened, and continuously verified container images significantly reduce our attack surface while ensuring compliance and operational reliability.

Chandra G.
Senior Release/DevOps Engineer
Enterprise (> 1000 emp.)

Rockin 0 CVEs in my base images due to Chainguard and now got an awesome shirt to tell the world! Sure there’s other ways to achieve this, but the effort on my end is minimal and I don’t have to worry about the sources of the packages. I’m not normally one to boast about a specific vendor, but 🤯.

Karl Haworth
Principal Engineer | Platform Engineering, Kubernetes, DevOps

Game changer? Not many reasons not to use @chainguard_dev  images now.

Profile image of Mark Manning.
Mark Manning

In our work supporting the Department of Defense, security isn't just a priority—it's a mandate. Chainguard's secure container images allow us to move fast while maintaining compliance with the most rigorous cybersecurity standards. By reducing the operational burden of patching and hardening, we can focus on delivering mission-critical solutions to our customers without compromising on security.”

Dylan Shepard
Senior Lead Platform Engineer

We adopted Chainguard stack (melange/apko/images) at work and everyone has been super happy since. We wrote a tiny bit to automate image digest updates when we rebuild the base images.

Tuan-Anh Tran
@tuananh_org

In the course of deploying Chainguard [Containers] over a week we saw immediate value, an immediate attack surface reduction, and a smaller blast radius. We went from 983 vulnerabilities down to just 36.

Chad Brustin
Vice President, Information Security

Every time someone from the Software Supply Chain space says they have "exciting news"... my 👀 turn to @chainguard_dev  and @lorenc_dan  recent tweets. 🐙⛓️🚀

Profile image for John Kjell.
John Kjell 🦉🛡️
@realjohnkjell

It's a remarkable thing when you introduce Chainguard [Containers] and see the vulnerability count plummet. Watching various applications go from hundreds or even thousands of vulnerabilities down to zero overnight is a really powerful testament to what Chainguard [Containers] can do.

Brandon Sterne
Senior Manager of Product Security

This is something that I would recommend to any developer or business that is looking to harden their applications. Securing the base image is the first step everyone should take.

Brad M.
Senior DevOps Engineer
Small-Business (50 or fewer emp.)

Chainguard really does look like it can transform the software supply chain for the greater good - just needs more eyes on it and commitment to adopt; I see almost no reason not to migrate services to these images; especially when there are like for like images available with what you need. Swapping a single line in your Dockerfile with a different source for your base image is all that is needed.

Profile image of Paul Drage.
Paul Drage
Engineering Manager @ Viator

Security is hard on its own, and while many vendors focus on selling detection products, Chainguard does the opposite and solve a painful problem with little effort from users.

Leonardo Z.
Senior Software Architect
Enterprise (> 1000 emp.)

Among all the vendors I work with, Chainguard ranks very high on the list, alongside RedHat.

Tuan Anh Tran
Head of Technology Platform, VPBank

Underrated benefit of Chainguard images, I can still pull them on hotel WiFi. 🥲

Profile image for John Kjell.
John Kjell 🦉🛡️
@realjohnkjell

Want to learn more about Chainguard?

Get info on our customized pricing plans or request a demo tailored to your team's workflows.

Let's chat