Secure Your Supply Chain
Before the Next Breach
Get 3 Months of Chainguard Libraries and Action for free.
Rebuild your CI/CD Pipeline on a foundation of trust, zero-CVE packages and SLSA L3-compliant builds.
Rebuild your CI/CD Pipeline on a foundation of trust, zero-CVE packages and SLSA L3-compliant builds.
The Software Suply Chain is Under Fire
Recent attacks on popular GitHub Actions and package registries have proven that "trusting the defaults" is no longer a viable security strategy. Security shouldn't be a luxury, it should be the baseline. Somerford and Chainguard are offering our hardened Libraries and Actions free for 90 days to help teams migrate to a secure-by-default environment.
Stop Chasing CVEs - Start Building
-
The Chainguard Advantage
- Minimalist by Design: Chainguard images and libraries contain only what is necessary to run your code -reducing the attack surface by up to 80%
- Proven Integrity: Every artifact is signed with Sigstore and includes a comprehensive Software Bill of Materials (SBOM)
- Seamless Integration: Works with your existing workflows. Simply point your package managers to the Chainguard Registry and breathe easy.
Includes
- Full access to all three Chainguard Libraries ecosystems: Python, JavaScript, and Java for three months
- Full access to Chainguard Actions (automated exploit detection, AI-powered review, SBOMs + provenance attestations on every Action)
- All features included
- Digital/self-serve support resources (same model as Catalog Starter)
Limitations
- Limited period offer for 3 months
- Available to new customers only. (Existing Containers-only customers are eligible for this offer)
- Free tier support only — no support tickets, no phone escalation, no dedicated CSM, no Jumpstart services, no RCA
How it Works
-
1. Sign Up: Complete the form by May 31, 2026.
2. Verify & Access: Once approved, you’ll receive access to our hardened Libraries and Actions.
3. Stay Secure: Enjoy 3 months of premium security with no upfront financial commitment.
Additional Resources
Malware Unpacked –
Sha1-Hulud
Learn about the Sha1-Hulud Malware, the preinstall worm that
hijacked 26,000 repos
Chainguard Libraries – Technical Infosheet
A datasheet outlining Chainguard Libraries architecture, packaging, updates, and CI/CD integration.
Chainguard Libraries – Features & Benefits
Discover how Chainguard Libraries can help your organisation in this informative whitepaper
