For the complete documentation index, see llms.txt.

SBOM

Find a Matching Chainguard Image Using the API
How to call the Chainguard Image Matcher API with an existing SBOM to find the closest Chainguard image equivalent.
What is an SBOM (software bill of materials)?
Learn what Software Bill of Materials (SBOM) are, why they're essential for supply chain security, and how tools like Chainguard use SBOMs to enhance transparency
How to Sign an SBOM with Cosign
Signing software bills of materials with Cosign
Image Matcher Overview
Learn how the Chainguard Image Matcher uses SBOMs to recommend the closest Chainguard image equivalent for your existing container images.
Rego Policies
Writing Rego-based policies for Sigstore Policy Controller
Getting Started with OpenVEX and vexctl
Using vexctl to manage vulnerability communications
What Makes a Good SBOM?
An explanation of what makes a good SBOM