Procedural

Disallowing Run as Root User
Using Policy Controller to prevent running pods as root
Maximum Container Image Age
Maximum container image age with Policy Controller
Disallowing Unsafe sysctls
Use Policy Controller to limit pods to safe sysctls
Verify Signed Chainguard Images
Using Policy Controller to Verify Signed Chainguard Images
Create an Assumable Identity for a GitLab CI/CD Pipeline
Procedural tutorial outlining how to create a Chainguard identity that can be assumed by a GitLab CI/CD pipeline.
How To Integrate Okta SSO with Chainguard
Procedural tutorial on how to create an Okta App Integration
Rego Policies
Writing Rego-based policies for Chainguard Enforce