Migrating from Minimus?
As Minimus shuts down on October 22, 2026, Chainguard can help you maintain access to hardened container images. Chainguard and Minimus share the same Wolfi and apko foundation, making Chainguard a drop-in replacement for every Minimus image.
Features
Catalog Depth
3,000+ projects, 1,200+ FIPS variants, 30,000+ packages, 200+ Helm charts.
~1,200+ projects (with limited tags), limited proprietary Helm Charts support.
SDLC Coverage
Chainguard Containers, VMs, Libraries for Python, Java, and JavaScript, and Actions and Agent Skills provide a complete, secure-by-default foundation.
No additional open source artifacts.
Security SLA
Contractual SLA: 7 days Critical, 14 days all other severities, 1-day KEV SLA. Actual average patch times are significantly faster: Critical <20 hours, High 2.05 days, Medium 2.5 days, Low 3.05 days
48 hours for Critical/High, 14 days for Medium/Low, 1-day KEV SLA.
OS
Purpose-built Linux OS. Total control from source to artifact.
Wolfi-based OS.
Ecosystem Support
Broad and deep scanner support, including every scanner Minimus supported — Grype, Trivy, Amazon Inspector, and Snyk — plus Wiz, Prisma, Microsoft Cloud Defender, CrowdStrike, and more, as well as artifact managers.
Grype, Trivy, Amazon Inspector, Snyk, plus OpenVEX support for any other scanner.
Migration
Chainguard's AI agent, Guardener, intelligently rebuilds Dockerfiles layer by layer, testing as it builds, so platform teams standardize faster, and developers never break stride. And because Chainguard and Minimus share the same Wolfi and apko foundation, most images are near drop-in replacements. Migration is faster than you'd expect.
Registry shuts down October 22, 2026.
Compliance
1,200+ FIPS image variants leveraging Chainguard FIPS Provider for OpenSSL 3.4, eliminating third-party reliance for patches or certificate updates.
~230 FIPS images, reliant on third-party FIPS module, slowing CVE remediation and certificate updates.
Customization
Image customization with Custom Assembly, powered by the Chainguard Factory and underpinned by 30k+ packages, with all custom images covered under Chainguard's CVE remediation SLA.
UI-based Image Creator, limited package repository.
What sets Chainguard apart from Minimus?
With hundreds of successful customers, Chainguard gives engineering teams a secure-by-default foundation with the deepest and fastest growing catalog of trusted open source artifacts, built for the AI era.
Trusted OSS artifacts for every developer, AI agent, and workload.
Choose from over 3,000 OSS projects and 300,000 container images alongside a broad catalog of language libraries, VMs, CI/CD actions, and agent skills for comprehensive coverage across the software development lifecycle.
FIPS compliance without the third-party limitations.
Chainguard’s CMVP-validated module means no dependency on a third party to update certificates or fix vulnerabilities.
Enterprise-grade rigor, built to go the distance.
The team behind Sigstore, SLSA, and Google Distroless. Trusted by 500+ enterprises for a long-term foundation your org can rely on.
See Chainguard in action
Results that speak for themselves
A secure stack for every stage of the AI software development lifecycle
Engineering Hours Saved
CVEs Remediated
avG remediation time for critical cves
Reduction in Attack Surface
Avg. Reduction in CVEs