From 63d97eda28a47cfddcad73726b4fcf20b1033ef0 Mon Sep 17 00:00:00 2001 From: "stepsecurity-app[bot]" <188008098+stepsecurity-app[bot]@users.noreply.github.com> Date: Thu, 5 Feb 2026 20:40:40 +0000 Subject: [PATCH] [StepSecurity] Apply security best practices Signed-off-by: StepSecurity Bot --- mcp-server/Dockerfile | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/mcp-server/Dockerfile b/mcp-server/Dockerfile index 70628eb..14140a8 100644 --- a/mcp-server/Dockerfile +++ b/mcp-server/Dockerfile @@ -1,4 +1,4 @@ -FROM cgr.dev/chainguard/go:latest AS builder +FROM cgr.dev/chainguard/go:latest@sha256:8df9dd7beb988f8f912df54c036ea44e4b11455da5d33e2a4eb2d19de75820c8 AS builder WORKDIR /app @@ -8,7 +8,7 @@ COPY main.go ./ RUN go mod download RUN CGO_ENABLED=0 GOOS=linux go build -o mcp-server -FROM cgr.dev/chainguard/static:latest +FROM cgr.dev/chainguard/static:latest@sha256:9cef3c6a78264cb7e25923bf1bf7f39476dccbcc993af9f4ffeb191b77a7951e WORKDIR /app COPY --from=builder /app/mcp-server /app/mcp-server