Skip to content

feat(renovate): pin Docker base images to digests#114

Merged
nexus49 merged 1 commit intomainfrom
feat/renovate-docker-pin-digests
Apr 7, 2026
Merged

feat(renovate): pin Docker base images to digests#114
nexus49 merged 1 commit intomainfrom
feat/renovate-docker-pin-digests

Conversation

@nexus49
Copy link
Copy Markdown
Contributor

@nexus49 nexus49 commented Mar 31, 2026

Summary

  • Add docker:pinDigests preset to Renovate config to automatically pin Docker base images to their SHA256 digest
  • Complements the existing helpers:pinGitHubActionDigests preset with equivalent protection for Docker images
  • Improves supply chain security by ensuring builds use exact image versions

@nexus49 nexus49 requested review from a team as code owners March 31, 2026 14:28
@nexus49 nexus49 enabled auto-merge (rebase) March 31, 2026 14:30
@nexus49 nexus49 force-pushed the feat/renovate-docker-pin-digests branch from 80e11b0 to c1883d9 Compare March 31, 2026 14:30
@akafazov akafazov force-pushed the feat/renovate-docker-pin-digests branch from c1883d9 to 9a00e8a Compare March 31, 2026 15:40
…curity

Signed-off-by: Bastian Echterhölter <bastian.echterhoelter@sap.com>
On-behalf-of: @SAP <bastian.echterhoelter@sap.com>
@nexus49 nexus49 force-pushed the feat/renovate-docker-pin-digests branch from 9a00e8a to 20a5cfe Compare April 7, 2026 12:46
@nexus49 nexus49 merged commit 7913565 into main Apr 7, 2026
3 checks passed
@nexus49 nexus49 deleted the feat/renovate-docker-pin-digests branch April 7, 2026 12:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants