Sign inSign up

cleanstart/cosign

Verified Publisher

By CleanStart

Updated about 14 hours ago

Secure by Design, Built for Speed, Hardened Container Images on a minimal base CleanStart OS.

Image
Security
0

50K+

cleanstart/cosign repository overview

Verified COSIGN Container Image

A hardened, minimal COSIGN container image built from source with verifiable software provenance and an SBOM, designed for secure production deployments.

For additional versions including FIPS support, explore CleanStart Images — secure, hardened container images

Pull Latest Image Download the container image from the registry

docker pull cleanstart/cosign:latest
docker pull cleanstart/cosign:latest-dev

Basic Run Run the container with basic configuration

docker run -it --name cosign-test cleanstart/cosign:latest-dev

Production Deployment Deploy with production security settings

docker run -d --name cosign-prod \
  --read-only \
  --security-opt=no-new-privileges \
  --user 1000:1000 \
  cleanstart/cosign:latest

Volume Mount Mount local directory for persistent data

docker run -v $(pwd)/keys:/keys cleanstart/cosign:latest

Port Forwarding Run with custom port mappings

docker run -p 8080:80 cleanstart/cosign:latest

Why Use CleanStart Images

  • Verified — Built from source with verifiable software provenance
  • Hardened — Minimal software footprint designed for secure deployment
  • Transparent — SBOM available for visibility into image contents
  • Production-ready — Built for modern container environments

Tag summary

Content type

Image

Digest

sha256:3613aa73a

Size

74.9 MB

Last updated

about 14 hours ago

docker pull cleanstart/cosign