Chainguard sells hardened, continuously rebuilt versions of open source software — container images, language libraries (starting with Java/Python), and VM images — that enterprises plug directly into their build pipelines in place of upstream packages. The core product is a software "factory": an automated system that pulls open source code from source, rebuilds it in a controlled environment, strips everything non-essential, signs it cryptographically, and keeps it patched on a rolling basis so customers never have to chase CVEs manually. The result is a catalog of 1,400+ container images and a growing library catalog, all with a zero-CVE SLA. Buyers are platform/security engineering teams at large enterprises that run containerized workloads and face regulatory pressure around supply chain risk. Customers include OpenAI, Anduril, Snowflake, Canva, Fortinet, HPE, and Snap. Revenue was $40M ARR in FY2025; the company is targeting $100M+ ARR by end of FY2026.