1# Helm chart metadata for floci with Chainguard images
2# These images are distroless and signed with Sigstore
5home: https://quench-works.com
7 - https://github.com/quenchworks/charts
8 - https://github.com/floci-io/floci
10description: Floci, the self-hosted, LocalStack-compatible local AWS emulator (Quarkus). This chart ships ONLY the in-process services (S3, DynamoDB, SQS, SNS, IAM) that run nonroot without a Docker socket; the Docker-backed services (Lambda, RDS, ECS, EKS, ...) are out of scope. Hardened by QuenchWorks as a minimal, nonroot, 0-CVE image, cosign-signed and pinned by digest.
24 email: info@quench-works.com
25 url: https://github.com/quenchworks
26icon: https://raw.githubusercontent.com/quenchworks/.github/main/profile/assets/chart-icon.png
30 artifacthub.io/category: integration-delivery
31 artifacthub.io/changes: |
33 description: "floci image rebuilt with jackson-databind fixed (CVE-2026-68497, CVE-2026-19032, CVE-2026-83557)"
34 artifacthub.io/images: |
36 image: ghcr.io/quenchworks/images/floci@sha256:f843b5ca44d93ae80bf47736d29d843d64db0d0992f6a59819cf732104553313
38 image: ghcr.io/quenchworks/images/floci-full@sha256:45159f1c27a4037a6fd9e98182725153b3038852094e8e3b81b3492b444b45c6
39 artifacthub.io/license: MIT
40 artifacthub.io/links: |
42 url: https://github.com/quenchworks/charts
44 url: https://github.com/quenchworks/images
45 artifacthub.io/operator: 'false'
46 artifacthub.io/prerelease: 'false'
47 artifacthub.io/signKey: |
48 fingerprint: keyless (cosign / Sigstore)
49 url: https://github.com/quenchworks/.github/blob/main/SECURITY.md
53 repository: file:///quench-common