Skip to content

Features

Six scanners. One pipeline. Zero re-architecture.

HarborGuard runs every major open-source container scanner against the same image, deduplicates findings, and routes them through one triage queue. You stop choosing between tools and start using all of them.

Beyond scanning

Findings are step one. Patching, SLAs, and compliance evidence finish the job.

Automatic patching

Buildah and Copa rebuild vulnerable base images with patched packages, preserving your Dockerfile layers. Patched images are signed and re-scanned automatically.

SLA tracking

Per-severity remediation deadlines. Notifications fire on warning thresholds (24h before breach) and breach events. Backfill applies new SLA targets to existing open vulns.

Compliance evidence

SOC 2, PCI-DSS, NIST 800-53, ISO 27001, FedRAMP, HIPAA, CMMC, CIS Docker. Reports are generated on demand from continuously collected evidence.