Limitations and caveats
The English user guide is currently in beta preview. Most of the documents have been automatically translated from the Japanese version. Should you find any inaccuracies, please reach out to Flatt Security.
Takumi Images intentionally defines the scope of its guarantees narrowly. This section explains what GMO Flatt Security takes responsibility for, and where responsibility remains with upstream projects or users.
Current beta scope
The currently provided image tag is :latest for each image listed in the catalog.
:latest supports both amd64 and arm64, and each image comes with a CycloneDX SBOM, keyless signature, and SLSA provenance.
Major-version-specific tags and contractual vulnerability response SLAs are not yet provided.
They are planned for future paid plans; see Pricing & Billing for the current outlook.
What is in this section
Responsibility Model explains how responsibility is split between the upstream projects that develop the software, GMO Flatt Security as the image provider, and the users who run the images. Upstream EOL Handling explains that Takumi Images generally stops providing patches for a version after upstream support ends, and describes planned future grace-period handling. Catalog Coverage explains how software is selected for image publication and where to check the latest catalog. Image Bugs explains how to distinguish bugs in the upstream software from bugs introduced by the image packaging.