Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Chainguard Containers provide a trusted set of minimal, zero-CVE container images with a top-tier CVE remediation SLA—addressing critical vulnerabilities within 7 days, and high, medium, and low within 14—enabling teams to build and deploy software more confidently.
As modern development workflows and CI/CD pipelines depend on secure, up-to-date containers for cloud-native applications, Chainguard offers streamlined images built entirely from source in a hardened, secure build environment. Designed for both engineering and security stakeholders, Chainguard Containers reduce the manual overhead of managing vulnerabilities, improve application resilience by shrinking the attack surface, and accelerate go-to-market by simplifying alignment with compliance standards and customer security expectations.
Description
Qualys Cloud Security offers a vulnerability analysis plug-in specifically designed for the CI/CD tool Jenkins, with plans to expand to additional platforms such as Bamboo, TeamCity, and CircleCI in the near future. Users can conveniently download these plug-ins straight from the container security module. This integration allows security teams to engage in the DevOps workflow, ensuring that vulnerable images are blocked from entering the system, while developers receive practical insights to address vulnerabilities effectively. It is possible to establish policies aimed at preventing the inclusion of vulnerable images in repositories, with settings adjustable based on factors like vulnerability severity and particular QIDs. The plug-in also provides an overview of the build, detailing vulnerabilities, information on software that can be patched, available fixed versions, and the specific image layers affected. Given that container infrastructure is inherently immutable, it is essential for containers to be consistent with the original images they are created from, thus necessitating rigorous security measures throughout the development lifecycle. By implementing these strategies, organizations can enhance their ability to maintain secure and compliant container environments.
API Access
Has API
Yes
API Access
Has API
Yes
Integrations
Jenkins
Yes
Akitra Andromeda
No
Bamboo
No
C1Risk
No
Cyclops
No
DataRobot
Yes
Docker
No
GitHub
Yes
Graylog
No
JFrog Xray
Yes
Integrations
Jenkins
Yes
Akitra Andromeda
Yes
Bamboo
Yes
C1Risk
Yes
Cyclops
Yes
DataRobot
No
Docker
Yes
GitHub
No
Graylog
Yes
JFrog Xray
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
No
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
Yes
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Chainguard
Country
United States
Website
www.chainguard.dev/
Vendor Details
Company Name
Qualys
Founded
1999
Country
United States
Website
www.qualys.com/apps/container-security/
Product Features
Application Development
Access Controls/Permissions
No
Code Assistance
No
Code Refactoring
No
Collaboration Tools
No
Compatibility Testing
No
Data Modeling
No
Debugging
No
Deployment Management
Yes
Graphical User Interface
No
Mobile Development
No
No-Code
No
Reporting/Analytics
No
Software Development
Yes
Source Control
No
Testing Management
No
Version Control
No
Web App Development
No
Container Security
Access Roles / Permissions
No
Application Performance Tracking
No
Centralized Policy Management
No
Container Stack Scanning
No
Image Vulnerability Detection
Yes
Reporting
Yes
Testing
No
View Container Metadata
Yes
IT Security
Anti Spam
No
Anti Virus
No
Email Attachment Protection
No
Event Tracking
No
IP Protection
No
Internet Usage Monitoring
No
Intrusion Detection System
No
Spyware Removal
No
Two-Factor Authentication
No
Vulnerability Scanning
Yes
Web Threat Management
No
Web Traffic Reporting
No
Product Features
Container Security
Access Roles / Permissions
No
Application Performance Tracking
No
Centralized Policy Management
No
Container Stack Scanning
No
Image Vulnerability Detection
No
Reporting
No
Testing
No
View Container Metadata
No