Skip to content

Chainguard Repository for Java#3316

Open
s-stumbo wants to merge 8 commits into
mainfrom
java-cg-repo
Open

Chainguard Repository for Java#3316
s-stumbo wants to merge 8 commits into
mainfrom
java-cg-repo

Conversation

@s-stumbo

@s-stumbo s-stumbo commented May 12, 2026

Copy link
Copy Markdown
Collaborator

[ ] Check if this is a typo or other quick fix and ignore the rest :)

Type of change

Update existing docs for Chainguard Repository support for Java libraries

What should this PR do?

Add content about Java to Chainguard Repository content:

  • Move general fallback/policy content into the Libraries overview and link to it from other pages
  • Update the chainguard-repository/overview page to include Java
  • Mention Chainguard Repository in the Java overview and in Build Config
  • Reframe the Java Global Config page to say Chainguard Repository is the recommended config

Why are we making this change?

Product update to support Chainguard Repository for Java

What are the acceptance criteria?

Java should be mentioned in content about Chainguard Repository, content should be clear and accurate

How should this PR be tested?

Review the deploy preview to ensure that content appears as expected

Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
@netlify

netlify Bot commented May 12, 2026

Copy link
Copy Markdown

Deploy Preview for ornate-narwhal-088216 ready!

Name Link
🔨 Latest commit bfa6c9b
🔍 Latest deploy log https://app.netlify.com/projects/ornate-narwhal-088216/deploys/6a2c0bd35ce2360008685b53
😎 Deploy Preview https://deploy-preview-3316--ornate-narwhal-088216.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

s-stumbo and others added 6 commits May 18, 2026 13:31
Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
Signed-off-by: s-stumbo <100295939+s-stumbo@users.noreply.github.com>
Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
Signed-off-by: s-stumbo <100295939+s-stumbo@users.noreply.github.com>
@s-stumbo s-stumbo marked this pull request as ready for review June 11, 2026 18:17
@s-stumbo s-stumbo requested a review from a team as a code owner June 11, 2026 18:17

@SharpRake SharpRake left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Changes look great! just some minor suggestions from me

Comment thread content/chainguard/libraries/java/build-configuration.md Outdated
Comment thread content/chainguard/libraries/java/global-configuration.md Outdated
Comment thread content/chainguard/libraries/java/overview.md Outdated
Comment thread content/chainguard/libraries/overview.md Outdated
enforcement; your repository manager handles local caching and access control.
Chainguard also retrieves packages from the public Maven Central repository on your
behalf when upstream fallback is enabled. This includes protections such as
malware detection and a cooldown period for newly published

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I asked in slack if this is really true fyi .. I cant really imagine we are really doing malware scanning on Java artifacts .. at least not reasonably

Signed-off-by: s-stumbo <sally.stumbo@chainguard.dev>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants