This is an on-going study, started in October 2025, about secured container images and Helm charts for individuals and companies.
:::note
This report is shared for informational purposes only. It was prepared objectively and may not be exhaustive. Please share any feedback by creating an Issue.
:::
Bitnami, acquired by VMware in 2019 (and later under Broadcom in 2023), has long provided popular open-source container images and Helm charts for applications like PostgreSQL, Redis, WordPress, and more.
These were freely available on Docker Hub and as OCI artifacts, making them a staple for Kubernetes deployments.
However, effective August 28, 2025 (with public catalog deletion postponed to September 29, 2025, after community feedback), Bitnami announced major changes (bitnami/charts #35164) under the "Bitnami Secure Images" initiative:
docker.io/bitnamisecure) remains freely available, limited to the latest tag for development use.
No versioned tags, no updates for legacy imagesdocker.io/bitnamilegacy without further supportWe can keep using charts.bitnami.com/bitnami by switching to images from hub.docker.com/bitnamisecure.
Pros:
Cons:
CloudPirates, a German company created in 2021, provide Cloud Native Solutions.
Pros:
Cons:
Related blog posts:
Some individuals produce good quality content, such as 11notes images (code are minimal, rootless builds (reddit post).
Pros:
Cons:
For many technologies, official images are availables Docker Hub and Helm charts on Artifact Hub.
Pros:
Cons:
Percona is an open source database software, support, and services company started in 2006.
Pros:
Cons:
ActiveState provides secure container images.
Pros:
Cons:
Related blog post:
Bitnami Secure Images is the new offering that replaces original Bitnami application catalog.
Pros:
Cons:
Chainguard images is an offering from the trending company Chainguard, created in 2021.
Pros:
Cons:
Hardened Images is a Premium service offered by Docker.
Pros:
Cons:
Related blog post:
Minimus product is focused on security.
Pros:
Cons:
RapidFort Curated Images is an offering part of RapidFort platform.
Pros:
Cons:
Related blog post:
Red Hat Ecosystem Catalog is provided by Red Hat partner ecosystem.
Pros:
Cons:
SUSE Application Collection is a service provided by the company which provided the first Linux distribution for enterprises.
Pros:
Cons:
:::info
Vulnerabilities were checked with Trivy and size retrieved with Skopeo
:::
| Company | Free image | CVEs | Size | Helm charts |
|---|---|---|---|---|
| Broadcom | bitnamisecure/mongodb:latest |
π 2 | 280 MB | oci://registry-1.docker.io/bitnamicharts/mongodb |
| Chainguard | cgr.dev/chainguard/mongodb:latest |
π’ 0 | 104 MB | For paid customers only |
| CloudPirates | Official images from software vendors | π 2 | N/A | oci://registry-1.docker.io/cloudpirates/mongodb |
| MongoDB | docker.io/mongo:8.0.15 |
π 2 | 254 MB | Community chart is complicated to use |
| Percona | percona/percona-server-mongodb:7.0 |
π΄ 57 | 182 MB | Chart is not easy to use |
| RapidFort | rapidfort/mongodb-official:8.0.14-noble |
π 2 | 232 MB | N/A |