# Chainguard Registry

> The trusted source for open source

- **Canonical URI:** https://www.vioscale.ai/software/chainguard-registry
- **Category:** Container Registries
- **Homepage:** https://www.chainguard.dev
- **Also known as:** chainguard-registry
- **Profile claimed by vendor:** no
- **Last updated:** 2026-08-03T13:04:37.773Z

## Vioscale score

**63.4 / 100**, confidence 50% (medium).

Composite of weighted, independently-sourced signals (no user reviews, no vendor payment).

| Signal | Score | Weight | Contribution | Evidence present |
|---|--:|--:|--:|:--:|
| price_level | 80 | 4 | 320 | ✓ |
| reliability | 50 | 8 | 400 | ✓ |
| capabilities | 74.7 | 14 | 1046.1 | ✓ |
| integrations | 0 | 8 | 0 | - |
| security_posture | 55 | 26 | 1430 | ✓ |
| pricing_transparency | 80 | 6 | 480 | ✓ |

## Pricing

_As of 2026-08-03, [verify at source](https://www.chainguard.dev). Independently observed._

Hybrid · Free tier

> Free tier with 5 images, or subscription from $19K/year for full catalog access

| Plan | Price | Free | Commitment |
|---|---|:--:|---|
| Free Images | Free | ✓ | - |
| Per Image | Contact sales | - | - |
| Catalog | Contact sales | - | - |

### Free Images

Up to five container images per organization for testing and production deployment

**Included limits:** images: 5 per organization

- Five images of choice, including previous versions
- Continuously built from source in SLSA L3 hardened infrastructure
- Sigstore signed artifacts with full build-time SBOMs and digital attestations
- Unlimited pulls with no metering

### Per Image (Contact sales)

Licensed by number and type of images (base, application, AI/ML, FIPS)

- Scoped production deployments per image
- Contractual CVE SLA (7 days critical, 14 days high/medium/low)
- All upstream supported versions including major/minor tags
- STIG-hardened and FIPS-validated images available
- Custom Assembly tooling and access to 10K+ packages
- EOL Grace Period updates for up to 6 months
- Console-based user management

### Catalog (Contact sales)

Licensed by engineering organization size with full access to complete image catalog

- Full access to 2,000+ images and growing
- Contractual CVE SLA
- Ability to request net new images at no additional cost
- All upstream supported versions
- Continuous updates from source in SLSA L3 hardened infrastructure
- Console to manage images, entitlements, and pull tokens

## About

Hardened, secure-by-design container images, language libraries, and VM images built from source with CVE remediation SLAs and AI attack prevention. Includes 2,500+ projects and 520K+ images.

_Independently observed._

## Platform & deployment

- **Platforms:** Web
- **Deployment:** Cloud / SaaS

## Capabilities

_The capabilities that matter for Container Registries. "-" = undocumented, not absent._

| Capability | Supported |
|---|:--:|
| **Deployment** | |
| Hosting | Cloud only |
| **Standards** | |
| OCI Distribution Spec compliant | - |
| **Scope** | |
| Artifact types | Container images only |
| **Security** | |
| Built-in vulnerability scanning | ✓ |
| Image signing (Cosign/Notation) | ✓ |
| SBOM generation / storage | ✓ |
| **Access** | |
| Fine-grained RBAC / robot accounts | ✓ |
| Private repositories | - |
| **Distribution** | |
| Geo-replication / mirroring | - |
| Pull-through cache / proxy | - |
| **Integration** | |
| Native cloud IAM integration | - |
| **Pricing** | |
| Pull-rate limits | None |
| **UX** | |
| Web UI / console | ✓ |
| **Ops** | |
| High-availability deployment | - |

## Facts

Every value below carries its source and our confidence. Facts are re-crawled on a freshness schedule.

### pricing

| Attribute | Value | Source | Retrieved | Confidence |
|---|---|---|---|---|
| pricing.free_tier | yes | [link](https://www.chainguard.dev) | 2026-08-03 | 60% (medium) |
| pricing.model | commercial | [link](https://www.chainguard.dev) | 2026-08-03 | 60% (medium) |
| pricing.price_level | low | [link](https://www.chainguard.dev) | 2026-08-03 | 60% (medium) |
| pricing.transparent | yes | [link](https://www.chainguard.dev) | 2026-08-03 | 60% (medium) |

### reliability

| Attribute | Value | Source | Retrieved | Confidence |
|---|---|---|---|---|
| reliability.status_page | yes | [link](https://status.chainguard.dev) | 2026-08-03 | 60% (medium) |

### security

| Attribute | Value | Source | Retrieved | Confidence |
|---|---|---|---|---|
| security.fedramp | yes | [link](https://www.chainguard.dev/security) | 2026-08-03 | 75% (high) |
| security.pci | yes | [link](https://www.chainguard.dev/security) | 2026-08-03 | 75% (high) |
| security.soc2 | yes | [link](https://www.chainguard.dev) | 2026-08-03 | 48% (low) |

---
*Source: Vioscale (https://www.vioscale.ai/software/chainguard-registry). Independent, evidence-based software intelligence. Cite the canonical URI.*
