For the complete documentation index, see llms.txt.

Procedural

Disallowing unsafe sysctls
Use Policy Controller to limit pods to safe sysctls
Verify signed Chainguard Containers
Using Policy Controller to verify signed Chainguard Containers
How to verify file signatures with Cosign
Use Cosign to verify non-container software artifacts
Verifying signatures in air-gapped environments
Use Cosign to verify container signatures and attestations without outbound network access
Grant Chainguard roles from identity provider groups
How to map groups from a custom identity provider to Chainguard roles so access follows group membership.
Subscribing to Chainguard CloudEvents
.
Create an assumable identity for a GitLab CI/CD pipeline
Procedural tutorial outlining how to create a Chainguard identity that can be assumed by a GitLab CI/CD pipeline.