frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

A Safer Container Ecosystem with Docker: Free Docker Hardened Images

https://www.docker.com/blog/docker-hardened-images-for-every-developer/
113•anttiharju•1h ago

Comments

jitl•1h ago
I went to "Hardened Images Catalog" and searched for pgbouncer, not found (https://hub.docker.com/hardened-images/catalog?search=pgboun...)

There's a "Make a request" button, but it links to this 404-ing GitHub URL: https://github.com/docker-hardened-images/discussion/issues

oh well. hope its good stuff otherwise.

pploug•52m ago
Thanks for reporting, team is fixing it, the right url is: https://github.com/docker-hardened-images/catalog/issues/
tecleandor•1h ago
Is this the response to the Bitnami/VMWare/Broadcom Helm charts thing?
kamrannetic•1h ago
no need for chainguard/bitnami anymore?
progbits•34m ago
Bitnami is in broadcom hell, nobody should use that.

Chainguard still has better CVE response time and can better guarantee you zero active exploits found by your prod scanners.

(No affiliation with either, but we use chainguard at work, and used to use bitnami too before I ripped it all out)

mmbleh•29m ago
CVE response time is a toss up, they all patch fast. Chainguard can only guarantee zero active exploits because they control their own exploit feed, and don't publish anything on it until they've patched. So while this makes it look better, it may not actually be better
digi59404•26m ago
FWIW - A whole host of the pre-IPO GitLab folks went to Chainguard. A lot of them, many in leadership roles. Most importantly, In Sales Leadership. These are people whom don’t really believe in high-pressure sales. Rather they aim to show the value and not squeeze customers for profit or making a number on a chart go up.

Do with that knowledge what you may.

nine_k•57m ago
The news: Docker Hardened Images (DHI) are now free to use for everyone. No reason not to use them.

Offering image hardening to custom images looks like a reasonable way for Docker to have a source of sustained income. Regulated industries like banks, insurers, or governmental agencies are likely interested.

scottydelta•42m ago
After their last rug pull when they started charging projects for registry after parading it as a fully free service for almost a decade, it has become hard to trust anything free.

Bait and switch once the adoption happens has become way too common in the industry.

skyline879•34m ago
When was this?
simlevesque•11m ago
https://www.docker.com/developers/free-team-faq/

> Is Docker sunsetting the Free Team plan?

> No. Docker communicated its intent to sunset the Docker Free Team plan on March 14, 2023, but this decision was reversed on March 24, 2023.

imglorp•5m ago
> 100 pulls per 6 hours for unauthenticated users and 200 pulls per 6 hours for Docker Personal users

Not a problem for casual users but even a small team like mine, a dozen people with around a dozen public images, can hit the pull limit deploying a dozen landscapes a day. We just cache all the public images ourselves and avoid it.

https://www.docker.com/blog/revisiting-docker-hub-policies-p...

pploug•19m ago
Projects are not charged for hub usage
cedws•9m ago
Docker is a company I just can’t hate on. They’ve completely transformed how software is deployed. Containers gained so much momentum it kind of outgrew them and they lost a lot of potential business. I would hardly call beginning to charge after a decade of free service a rug pull, especially now that dependence on Docker’s registry is shrinking all the time.
simlevesque•8m ago
I don't hate them. But I don't want to depend on them for any product I manage.
politelemon•5m ago
Given the wealth and productivity creation that they're responsible for enabling across the industry, they deserve to be paid for it. There is no way for them to have achieved this with zero friction.
BSVogler•10m ago
First look shows me that this is not an easy drop in replacement. First thing is this requires a log-in and makes me wonder why this is required. Perhaps some upselling coming.

With Bitnami discontinuing their offer, we recently switched to other providers. For some we are using a helm chart and this new offer provides some helm charts but for some software just the image. I would be interested to give this a try but e.g. the python image only various '(dev)' images while the guide mentions the non-dev images. So this requires some planning.

politelemon•7m ago
I appreciate what they're doing here, which is something I haven't seen other vendors doing.

Show HN: Voice-to-text for macOS using Groq's free Whisper API

https://github.com/bokan/stt
1•bbokan•53s ago•0 comments

AI, AI Oh

https://thinkhuman.com/aiaioh/
1•jamesgill•3m ago•0 comments

Finland is in midst of racist firestorm

https://www.bbc.com/news/articles/cde657xj3pxo
3•crazybonkersai•4m ago•1 comments

Temporal: Getting started with JavaScript's new date time API

https://2ality.com/2021/06/temporal-api.html
1•fanf2•5m ago•0 comments

Show HN: Tonbo – an embedded database for serverless and edge runtimes

https://github.com/tonbo-io/tonbo
2•ethegwo•5m ago•0 comments

Show HN: Arete – Plaid for AI identity (your context follows you across tools)

https://github.com/gustavofjordao021/arete-ai
1•gustavojordao•6m ago•1 comments

Gil Gerard, Star of 'Buck Rogers,' Dies at 82

https://www.nytimes.com/2025/12/17/arts/gil-gerard-buck-rogers-dead.html
1•jamesgill•8m ago•1 comments

Look around: Bubbles are everywhere

https://www.bloomberg.com/features/2025-bubbles-everywhere/
2•toomuchtodo•8m ago•1 comments

Show HN: AI agent that investigates CloudWatch alarms – 5-min Terraform deploy

https://aiopscrew.com
1•avansledright•9m ago•0 comments

What could’ve been Google’s worst year turned into one of its best

https://www.theverge.com/report/840856/google-end-of-year-recap-lawsuits-antitrust-ai-gemini-epic
1•saikatsg•14m ago•0 comments

Show HN: Why I'm building a graphical, simple Proof Assistant for kids

https://substack.com/inbox/post/181868197
1•tri2820•15m ago•0 comments

Jimmy Wales trusts the process

https://www.theverge.com/tech/846184/jimmy-wales-trusts-the-process
3•saikatsg•16m ago•0 comments

Putin Signs Law Confiscating 'Ownerless' Homes in Occupied Ukraine

https://www.kyivpost.com/post/66381
5•saubeidl•18m ago•0 comments

LingoScreen – Localize product images and screenshots in seconds, not days

https://lingoscreen.com
1•tpierce89•19m ago•1 comments

How did IRC ping timeouts end up in a lawsuit?

https://mjg59.dreamwidth.org/73777.html
2•dvaun•21m ago•0 comments

Tool search is dead, long live skills

https://nicolaygerold.com/posts/tool-search-is-dead-long-live-skills
2•the_mitsuhiko•21m ago•0 comments

GitHub is going to start charging you for using your own hardware

https://www.theregister.com/2025/12/17/github_charge_dev_own_hardware/
5•jjgreen•22m ago•0 comments

Top Open Source licenses in 2025

https://opensource.org/blog/top-open-source-licenses-in-2025
2•TangerineDream•23m ago•0 comments

Looking for a Remote Job in Python/Django/Flask

1•hanslett12•23m ago•0 comments

Tool search should not be search but discovery

https://nicolaygerold.com/posts/tool-search-should-not-be-just-search-but-discovery
1•the_mitsuhiko•24m ago•0 comments

Show HN: Get an Amazon Giftcard to Test Premium Features on Remotelygood.us

https://remotelygood.us
1•Theresa_i_a•25m ago•0 comments

Show HN: A Full-Control Cloud That Puts You in Charge of Your Deployments

https://hubfly.space/blog/demo-launch
2•octave12•26m ago•0 comments

Mass hacking of IP cameras leave Koreans feeling vulnerable in homes, businesses

https://koreajoongangdaily.joins.com/news/2025-12-17/national/socialAffairs/Mass-hacking-of-IP-ca...
2•giuliomagnifico•27m ago•0 comments

Show HN: Hopeless – Removing API Bloat Before It Reaches Your LLM on Legacy API

https://www.hopelessapi.com
1•Ugyen_Tech•27m ago•0 comments

Show HN: MCPShark Viewer (VS Code/Cursor extension)- view MCP traffic in-editor

12•mywork-dev•27m ago•0 comments

Unemboldening

https://www.gpxz.io/blog/unemboldening
1•bckygldstn•28m ago•1 comments

Hack Reveals the A16Z-Backed Phone Farm Flooding TikTok with AI Influencers

https://www.404media.co/hack-reveals-the-a16z-backed-phone-farm-flooding-tiktok-with-ai-influencers/
8•grahamlee•30m ago•2 comments

Please, Stop Talking About "Tradeoffs"

https://pushtoprod.substack.com/p/stop-saying-tradeoffs
1•mooreds•31m ago•0 comments

Cheese Mites and Sludge Worms: The Origins of Grossout Cinema

https://worldhistory.substack.com/p/cheese-mites-and-sludge-worms-the
1•crescit_eundo•31m ago•0 comments

How SQLite Is Tested

https://sqlite.org/testing.html
8•whatisabcdefgh•31m ago•1 comments