Sonatype AgentP (AGP) is Sonatype's agentic remediation CLI, packaged as a container image for use in CI and automation. AGP scans dependency manifests, identifies vulnerable and outdated components, and opens pull requests that apply upgrades — optionally gated on your own build and test commands.
linux/amd64, linux/arm64AGP is distributed as three chained images. The runtime image most consumers
want is sonatype/agp; the other two are the OSS toolchain and OS layers it is
built from, published separately for licensing transparency.
sonatype/agp — the runtime image. Inherits sonatype/agp-build-tools
and adds the AGP CLI and entrypoint scripts. Use this image in CI systems and
the Sonatype GitHub Action.sonatype/agp-build-tools — the polyglot build toolchain layer.
Inherits sonatype/agp-base and adds Node.js 22, OpenJDK 17/21/25, Python
with poetry and uv, Maven, Gradle, Go, bun, Yarn 4, pnpm 11, the .NET SDK 10,
Claude Code, npm-run-all2, and their transitive dependencies. Published for licensing
transparency; not intended for direct use — use sonatype/agp.sonatype/agp-base — the Alpine 3.22 baseline with the non-root agp
user (uid/gid 10000), pinned OpenSSL, and the minimal system utilities the
chain relies on. Published for licensing transparency; not intended for
direct use — use sonatype/agp.| Tag | Description |
|---|---|
latest | Most recent release of sonatype/agp. Only sonatype/agp carries latest. |
<version> | A specific published release (e.g. 1.0.0), available on each of the three images. |
sonatype/agp is designed to run inside a GitHub Actions workflow via the
sonatype/agp-action — the action
sets up the workspace, credentials, and INPUT_* environment the CLI expects,
then invokes agp against your checkout. See
https://help.sonatype.com/en/sonatype-guide.html for setup.
The entrypoint dispatches on INPUT_MODE against an explicit allowlist:
full/security/unset run agp run . --source GITHUB_ACTION from
$INPUT_WORKING_DIRECTORY (falling back to /github/workspace, which is what
most callers get), heal runs agp heal $INPUT_REPO_ID, and resolve-failure
runs agp resolve-failure $INPUT_REPO_ID. Any other value exits non-zero rather
than falling back to a full upgrade sweep. Overriding
INPUT_WORKING_DIRECTORY is how Sonatype's Jenkins plugin runs AGP against
a subdirectory of a monorepo checkout. Either way, docker run sonatype/agp:latest invoked directly (with no workspace mount or
credentials) will fail. To exercise the binary itself outside a workflow
(e.g. to check the version), override the entrypoint:
docker run --rm --entrypoint agp sonatype/agp:latest --version
| Variable | Available on | Description |
|---|---|---|
JAVA_HOME | agp, agp-build-tools | Default /usr/lib/jvm/java-21-openjdk. Alternates: JAVA_17_HOME, JAVA_25_HOME. |
GIT_AUTHOR_NAME / GIT_AUTHOR_EMAIL | all three | Override the default commit identity. The default (Agentic Patches <[email protected]>) is configured on the agp user only; a process running as root has no default. |
GIT_COMMITTER_NAME / GIT_COMMITTER_EMAIL | all three | Same, for committer identity. |
The sonatype/agp runtime image sets its working directory to
/github/workspace; the intermediate images declare no WORKDIR and fall
back to /.
On sonatype/agp, the entrypoint (/entrypoint.sh) starts as root to chown
the workspace, then drops to the non-root agp user (uid/gid 10000) via
su-exec before executing the AGP CLI. Overriding the entrypoint or running
the intermediate images directly bypasses this switch and leaves the process
running as root.
PATHPATH ordering is not part of the public contract and may change between
releases. Today the toolchain directories (.NET, Go, Gradle, Maven, the JDK)
resolve first, then the system directories, and $GOPATH/bin
(/home/agp/go/bin, where go install writes) resolves last — deliberately
last, so a tool installed during a build cannot shadow one the image ships.
If your build installs a tool whose name collides with something already in the
image and you need yours to take precedence, invoke it by absolute path rather
than relying on PATH order.
sonatype/agp includes a C compiler toolchain (build-base and
pkgconfig, inherited from sonatype/agp-build-tools) to support Go
packages that link a native C library via CGO — e.g. go-sqlite3 — which
would otherwise fail to build during a dependency upgrade.
Report suspected vulnerabilities through https://help.sonatype.com.
Use of these images is subject to Sonatype's terms and the third-party attributions listed at https://links.sonatype.com/products/clm/attributions.
Content type
Image
Digest
sha256:1a3fc7b08…
Size
13.3 MB
Last updated
about 17 hours ago
docker pull sonatype/agp-base:1.0.0Pulls:
58
Last week