FAQs - Containers

ActiveState containers have everything you need to run your app and nothing else, all delivered in a regularly updated, low-to-no vulnerability container image. From the base layer to app dependencies, ActiveState’s secure containers offer complete customization, full provenance, and none of the patching chaos.

Jump to an FAQ:

What makes ActiveState containers more secure than standard base images?

ActiveState container images are assembled entirely from source to ensure low-to-no CVEs right out of the box.

Each image is rebuilt nightly and includes a signed SBOM and attestation.

Can I customize the container to fit my specific tech stack?

Yes. Any of our free containers can be further customized in collaboration with our Customer Success team. Customization leverages ActiveState’s catalog of 40M+ secure components, ensuring a secure container from the ground up.

How fast can I get a custom container back?

In most cases, your secure container will be delivered via a private repository for evaluation within a few business days. Specific timelines will be scoped based on your application requirements.

Do ActiveState containers help with compliance?

Absolutely. Available on demand, ActiveState container images can be further hardened to support strict compliance requirements (e.g., SOC 2, FedRAMP, etc.).