Secure by Design, Built for Speed, Hardened Container Images on a minimal base CleanStart OS.
50K+
Verified COSIGN Container Image
A hardened, minimal COSIGN container image built from source with verifiable software provenance and an SBOM, designed for secure production deployments.
For additional versions including FIPS support, explore CleanStart Images — secure, hardened container images
Pull Latest Image Download the container image from the registry
docker pull cleanstart/cosign:latest
docker pull cleanstart/cosign:latest-dev
Basic Run Run the container with basic configuration
docker run -it --name cosign-test cleanstart/cosign:latest-dev
Production Deployment Deploy with production security settings
docker run -d --name cosign-prod \
--read-only \
--security-opt=no-new-privileges \
--user 1000:1000 \
cleanstart/cosign:latest
Volume Mount Mount local directory for persistent data
docker run -v $(pwd)/keys:/keys cleanstart/cosign:latest
Port Forwarding Run with custom port mappings
docker run -p 8080:80 cleanstart/cosign:latest
Why Use CleanStart Images
Content type
Image
Digest
sha256:3613aa73a…
Size
74.9 MB
Last updated
about 23 hours ago
docker pull cleanstart/cosign