Skip to main content

pindock

Pin and update Docker image digests in Dockerfiles and compose files

PyPI: Version AUR: version GitHub: Release Docker: ghcr CI: Main CI: Coverage

InstallationUsagePre-commit

Installation

# PyPI
uv tool install pindock

# AUR
yay -S pindock-bin

# Docker
docker pull ghcr.io/deadnews/pindock

Usage

Usage: pindock <command> [flags]

Pin and update Docker image digests.

Commands:
  run      Pin unpinned image digests.
  check    Verify all images are pinned.

run flags:
  -C, --dir=.      Directory to scan.
  -u, --update     Also update tags and pinned digests to latest.
  -v, --verbose    Show all images, including pinned.

check flags:
  -C, --dir=.      Directory to scan.
  -u, --update     Also check tags and pinned digests for updates.
  -v, --verbose    Show all images, including pinned.
  • When no files are given, pindock auto-discovers files recursively.
  • latest and untagged images are pinned to the version tag pointing at the same digest (2.0.1 preferred over 2.0 and 2).
  • --update never moves a version tag past the version latest points to.
  • Prerelease tags (-rc, -alpha, -beta) update to the newest stable release once one is available; until then they follow their prerelease stream.

Supported files

  • Dockerfile, Containerfile (and variants like Dockerfile.dev, *.dockerfile)
  • compose*.yml, docker-compose*.yml (and .yaml)

Supported instructions

Dockerfile Compose
FROM [--platform=...] image:tag[@digest] [AS name] image: image:tag[@digest]
COPY --from=image:tag[@digest] ...
RUN --mount=from=image:tag[@digest],... ...

Authentication

Uses existing Docker credentials. If you can docker pull, pindock works too.

Pre-commit

repos:
  - repo: https://github.com/deadnews/pindock
    rev: v1.0.0
    hooks:
      - id: pindock
      - id: pindock-check

      # example with args
      - id: pindock-check
        args: [--update, --verbose]

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distributions

If you're not sure about the file name format, learn more about wheel file names.

pindock-1.1.1-py3-none-win_arm64.whl (3.6 MB view details)

Uploaded Python 3Windows ARM64

pindock-1.1.1-py3-none-win_amd64.whl (4.0 MB view details)

Uploaded Python 3Windows x86-64

pindock-1.1.1-py3-none-musllinux_1_2_x86_64.whl (3.9 MB view details)

Uploaded Python 3musllinux: musl 1.2+ x86-64

pindock-1.1.1-py3-none-musllinux_1_2_aarch64.whl (3.5 MB view details)

Uploaded Python 3musllinux: musl 1.2+ ARM64

pindock-1.1.1-py3-none-manylinux_2_17_x86_64.whl (3.9 MB view details)

Uploaded Python 3manylinux: glibc 2.17+ x86-64

pindock-1.1.1-py3-none-manylinux_2_17_aarch64.whl (3.5 MB view details)

Uploaded Python 3manylinux: glibc 2.17+ ARM64

pindock-1.1.1-py3-none-macosx_11_0_arm64.whl (3.6 MB view details)

Uploaded Python 3macOS 11.0+ ARM64

pindock-1.1.1-py3-none-macosx_10_9_x86_64.whl (3.9 MB view details)

Uploaded Python 3macOS 10.9+ x86-64

File details

Details for the file pindock-1.1.1-py3-none-win_arm64.whl.

File metadata

  • Download URL: pindock-1.1.1-py3-none-win_arm64.whl
  • Upload date:
  • Size: 3.6 MB
  • Tags: Python 3, Windows ARM64
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.13

File hashes

Hashes for pindock-1.1.1-py3-none-win_arm64.whl
Algorithm Hash digest
SHA256 5a009a7fb89bfcad3f0c417d3c53d2d79366d702f0dad4d849c7547bc93dad23
MD5 9cb7fa5d0e9fd742bbde30894484ad8f
BLAKE2b-256 b2cb5faf20132451f6fc57ce1e227349e304fc0146e2ac8a61b77c5be3e9012a

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-win_arm64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-win_amd64.whl.

File metadata

  • Download URL: pindock-1.1.1-py3-none-win_amd64.whl
  • Upload date:
  • Size: 4.0 MB
  • Tags: Python 3, Windows x86-64
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.13

File hashes

Hashes for pindock-1.1.1-py3-none-win_amd64.whl
Algorithm Hash digest
SHA256 3031c660478428f5b41cee6fc5ac204fbee4f76a46157b0c92cc41e2fa2b699e
MD5 5470933a5d3d8249995feea85c288c2a
BLAKE2b-256 568ce3adc5b52275025b86900f2205b53ec68e2952659a6f03525aa5e2ff5813

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-win_amd64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-musllinux_1_2_x86_64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-musllinux_1_2_x86_64.whl
Algorithm Hash digest
SHA256 e41950ccea8dd9c23cce03b3e65135a7a67b3e47eac1d4418cdd7ebfb5e25049
MD5 4af64c14f55244cd5745e58b9270bdb2
BLAKE2b-256 4cce98713841d355b8c04c3036e3eb814db68b25d1e6bb7f43e62521d74525f4

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-musllinux_1_2_x86_64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-musllinux_1_2_aarch64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-musllinux_1_2_aarch64.whl
Algorithm Hash digest
SHA256 e16454f6b4d779b2846375426b5a43fd1789fcb01192075e8abc115d1590a4d1
MD5 5dc263e968f8007cc4b9711af88ff8f3
BLAKE2b-256 f72ad1512074f0b2bfb453d658785065fc1f83d6553f6dd591f625bcb22da620

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-musllinux_1_2_aarch64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-manylinux_2_17_x86_64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-manylinux_2_17_x86_64.whl
Algorithm Hash digest
SHA256 3508f1ad842a8217d9866860dd418881a893e6125f22a17637ed3519a2fb2bae
MD5 907e5b087eff86e90fb2b9a8366e3198
BLAKE2b-256 20d18c046b0fd72977cc44c8fc6bd9a40a45348e3375a1038fc68c85f8894b0c

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-manylinux_2_17_x86_64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-manylinux_2_17_aarch64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-manylinux_2_17_aarch64.whl
Algorithm Hash digest
SHA256 1a899f604738e7442f1dd8262c1684bdfddfb296837c540daaf25d6dc4073faa
MD5 006ec1ee208e049cc17d0aa6e231ccb7
BLAKE2b-256 8493a9d138841fa6cd43bed48cebc79b2b92b88081f68696e8d06c5067b91390

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-manylinux_2_17_aarch64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-macosx_11_0_arm64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-macosx_11_0_arm64.whl
Algorithm Hash digest
SHA256 ff5cdb87ac463d242b35523b02bf4a49af922c56023b73792b49f38ac644f825
MD5 42cd1ef6d416bf18fabc8ea39cf209d9
BLAKE2b-256 070367f40ccaf6dc6e222ea1fe7b0a8cf4bbb4524b115cebda632fcaf7f88736

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-macosx_11_0_arm64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file pindock-1.1.1-py3-none-macosx_10_9_x86_64.whl.

File metadata

File hashes

Hashes for pindock-1.1.1-py3-none-macosx_10_9_x86_64.whl
Algorithm Hash digest
SHA256 f857f1d1b5361eda6b6368a758b77fa663afb66e230ecdaf2aa1588ffb9516ff
MD5 931b8ab9d11b1ff7c1a6997aeffe9352
BLAKE2b-256 2ff6ee3ac0fc8d513ad66a2fd467fd716ae4dbb1abeaca0645f08f293a127f08

See more details on using hashes here.

Provenance

The following attestation bundles were made for pindock-1.1.1-py3-none-macosx_10_9_x86_64.whl:

Publisher: main.yml on deadnews/pindock

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.
Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page