For the complete documentation index, see llms.txt.

Procedural

Create an assumable identity for a Kubernetes pod
Procedural tutorial outlining how to create a Chainguard identity that can be assumed by a Kubernetes pod.
Authenticating with the Chainguard SDK
Tutorial with examples showing how you can authenticate with the Chainguard SDK's auth and auth/ggcr packages.
Creating Wolfi images with Dockerfiles
This tutorial demonstrates how to build a Wolfi Python image from scratch, using a Dockerfile workflow.
How to sign and upload metadata to Rekor
Use the Rekor CLI to sign and upload metadata to the Sigstore transparency log
How to sign blobs and standard files with Cosign
Use Cosign to sign non-container software artifacts
Enable PKCE for OAuth token exchange
How to add PKCE to your custom identity provider's OAuth token exchange with Chainguard, either alongside a client secret or as a secret-free public client.
Using the Chainguard API to manage Custom Assembly resources
How to use the Chainguard API to manage Custom Assembly resources.