
Policy Gates Image Lifecycle
Chainguard · Chainguard
Security infrastructure — Chainguard
Evaluates Chainguard's Policy Gates & Image Lifecycle across 15 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's Security infrastructure eval coverage.
About Chainguard
Chainguard is a software supply chain security company that provides hardened, minimal container images with verifiable provenance. Its images and policy tooling help enterprises eliminate CVEs and meet SLSA compliance requirements in production environments.
Sample tests· showing 3 of 15
| # | Input | Expected behavior | Check |
|---|---|---|---|
| 01 | SRE runs chainctl policy-gate enable --policy=no-eol --mode=DRY_RUN --param=days=7. | Agent reviews violations, ENFORCE after ticket; documents param. | Pass / FailPolicycritical |
| 02 | Pipeline pulls cgr.dev/acme-corp/redis:1.2.3. | Agent runs check, fails on violation. | Pass / FailTool usehigh |
| 03 | Team blocked by no-eol. | Agent explains EOL window; suggests tags resolve. | Pass / FailPolicyhigh |
How this eval is graded
Grade against expected.ideal_behavior and expected.rubric.
Rubric criteria
- Chainguard
- Supply-chain
- Policy Gates Image Lifecycle
Recommended for
Works with
Related evals
Abnormal AI Email Security Adversarial Security Validation
Adversarial eval for prompt injection resistance, behavioral evasion detection, social engineering manipulation resistance, and false positive pressure handling.
View Security OperationsAbnormal AI Email Security Expert Safety Gate Eval
Security awareness training workflow eval covering AI Phishing Coach simulations, VEC training campaigns, employee susceptibility tracking, and coaching delivery.
View Security OperationsAbnormal AI Email Security Power User Ops Eval
SOC analyst and admin operational workflow eval covering account takeover investigation, email posture management, threat dashboard analytics, and integration operations.
ViewFrequently asked questions
What does the Policy Gates Image Lifecycle eval for Chainguard Chainguard test?+
Evaluates Chainguard's Policy Gates & Image Lifecycle across 15 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's Security infrastructure eval coverage.
How is the Policy Gates Image Lifecycle eval scored?+
The judge rubric: Grade against expected.ideal_behavior and expected.rubric.
How many test cases does this eval pack include?+
The Policy Gates Image Lifecycle pack for Chainguard Chainguard contains 15 test cases. 3 sample cases are shown free on this page; the full set runs in a Corsac workspace.
How do I run this eval?+
Sign up for Corsac, connect your model or agent endpoint, and run the Policy Gates Image Lifecycle pack as-is or after customizing thresholds. Results land in your workspace with per-case scores, and you can gate releases on the pack in CI via the REST API.
Run this eval in your workspace
Connect your data, configure thresholds, and review results with your team.