<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Configuration on</title><link>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/tags/configuration/</link><description>Recent content in Configuration on</description><generator>Hugo -- gohugo.io</generator><language>en-US</language><copyright>Copyright (c) 2023 Chainguard</copyright><lastBuildDate>Tue, 06 Oct 2026 17:41:00 +0000</lastBuildDate><atom:link href="https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/tags/configuration/index.xml" rel="self" type="application/rss+xml"/><item><title>Guarded Entrypoint examples</title><link>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/containers/custom-assembly/guarded-entrypoint/examples/</link><pubDate>Tue, 06 Oct 2026 17:41:00 +0000</pubDate><guid>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/containers/custom-assembly/guarded-entrypoint/examples/</guid><description>&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Note&lt;/strong&gt;: Guarded Entrypoint is in beta. To use it, contact Chainguard customer support to enable it for your organization.&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;This page has four example manifests for &lt;a href="https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/containers/custom-assembly/guarded-entrypoint/"&gt;Guarded Entrypoint&lt;/a&gt;. Each one is a complete manifest for &lt;code&gt;chainctl images repos build edit&lt;/code&gt; or &lt;code&gt;chainctl images repos build apply&lt;/code&gt;. None of them contains a literal secret. Each secret is a reference that the wrapper resolves when the container starts.&lt;/p&gt;
&lt;p&gt;Applying a manifest replaces the repo&amp;rsquo;s stored configuration. If your repo already has other customizations, such as packages, add the Guarded Entrypoint keys to your existing manifest instead of replacing it.&lt;/p&gt;</description></item><item><title>Managing Chainguard App connections</title><link>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/guardener/github/app-connections/</link><pubDate>Mon, 03 Aug 2026 00:00:00 +0000</pubDate><guid>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/guardener/github/app-connections/</guid><description>&lt;p&gt;Guardener acts on your GitHub repositories on behalf of your Chainguard organization. The bridge between the two is a &lt;strong&gt;connection&lt;/strong&gt;: a Chainguard App installation on a GitHub organization, linked to a Chainguard organization. This page explains how connections work and how to set up, inspect, change, and remove them.&lt;/p&gt;
&lt;p&gt;For a first-time walkthrough, refer to &lt;a href="https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/guardener/github/getting-started/"&gt;Getting started&lt;/a&gt;. This page is the fuller reference for managing connections over time.&lt;/p&gt;
&lt;p&gt;
&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Note&lt;/strong&gt;: Guardener is in beta. Available to organizations that have installed and linked the Chainguard App.&lt;/p&gt;</description></item><item><title>Configuring Guardener</title><link>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/guardener/github/configuration/</link><pubDate>Wed, 08 Jul 2026 00:00:00 +0000</pubDate><guid>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/guardener/github/configuration/</guid><description>&lt;p&gt;Guardener is configured entirely through files committed to a &lt;code&gt;.chainguard/&lt;/code&gt; directory — either in each repository, or once at the organization level in your &lt;code&gt;.github&lt;/code&gt; repository. This page explains the configuration model that all Guardener features share. For the specific options of each feature, refer to its dedicated page.&lt;/p&gt;
&lt;h2 id="the-chainguard-directory" class="heading-2" data-heading-level="2"&gt;
&lt;span class="heading-text"&gt;The &lt;code&gt;.chainguard/&lt;/code&gt; directory&lt;/span&gt;
&lt;a href="#the-chainguard-directory" class="anchor" aria-label="Link to The .chainguard/ directory" title="Link to this section"&gt;
&lt;svg width="16" height="9" viewBox="0 0 16 9" fill="none" xmlns="http://www.w3.org/2000/svg" aria-hidden="true"&gt;
&lt;path d="M6.833 8.125H4C3 8.125 2.146 7.77067 1.438 7.062C0.729333 6.354 0.375 5.5 0.375 4.5C0.375 3.5 0.729333 2.646 1.438 1.938C2.146 1.22933 3 0.875 4 0.875H6.833V1.958H4C3.30533 1.958 2.708 2.208 2.208 2.708C1.708 3.208 1.458 3.80533 1.458 4.5C1.458 5.19467 1.708 5.792 2.208 6.292C2.708 6.792 3.30533 7.042 4 7.042H6.833V8.125ZM5.208 5.042V3.958H10.792V5.042H5.208ZM9.167 8.125V7.042H12C12.6947 7.042 13.292 6.792 13.792 6.292C14.292 5.792 14.542 5.19467 14.542 4.5C14.542 3.80533 14.292 3.208 13.792 2.708C13.292 2.208 12.6947 1.958 12 1.958H9.167V0.875H12C13 0.875 13.854 1.22933 14.562 1.938C15.2707 2.646 15.625 3.5 15.625 4.5C15.625 5.5 15.2707 6.354 14.562 7.062C13.854 7.77067 13 8.125 12 8.125H9.167Z" fill="currentColor"/&gt;
&lt;/svg&gt;
&lt;/a&gt;
&lt;/h2&gt;&lt;p&gt;Guardener reads its configuration from the &lt;code&gt;.chainguard/&lt;/code&gt; directory at the root of each repository. Every feature has its own file:&lt;/p&gt;</description></item><item><title>Guarded Entrypoint for Custom Assembly</title><link>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/containers/custom-assembly/guarded-entrypoint/</link><pubDate>Tue, 06 Oct 2026 17:41:00 +0000</pubDate><guid>https://chainguard-docs-preview-git-create-pull-request-patch.chainguard.app/chainguard/containers/custom-assembly/guarded-entrypoint/</guid><description>&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Note&lt;/strong&gt;: Guarded Entrypoint is in beta. To use it, contact Chainguard customer support to enable it for your organization.&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;Guarded Entrypoint lets a Custom Assembly image run startup logic without a derived image build. You declare the logic as part of your Custom Assembly configuration. Chainguard builds it into the image and signs the result.&lt;/p&gt;
&lt;p&gt;This page explains what Guarded Entrypoint is and how to turn it on. The other pages in this section cover the details:&lt;/p&gt;</description></item></channel></rss>