Copacetic
https://github.com/project-copacetic/copacetic
#docker #podman #container #buildkit #security
copa is a CLI tool written in Go and based on buildkit that can be used to directly patch container images without full rebuilds. copa can also patch container images using the vulnerability scanning results from popular tools like Trivy.
https://github.com/project-copacetic/copacetic
#docker #podman #container #buildkit #security