Get started
If you’re new to Chainloop, you can get started using the guides below.Quickstart
Get started with Chainloop in minutes.
Getting Started Guide
A step-by-step guide to will walk you through many of the Chainloop features.
Concepts
Learn about the key concepts of Chainloop
Deep dive Guides
Guides to help you get the most out of Chainloop.
What’s Chainloop?
Chainloop provides a centralized platform for artifact management, real-time visibility, and automated compliance. It bridges gaps between Developers, security, and compliance teams. Some of Chainloop’s pillars include. Central Evidence Store for SDLC: A single platform to centralize, connect, and validate any evidence or metadata —from SBOMs and IaC validation reports to SAST, DAST results, and cloud security checks. The collection of data



How does it work?
With Chainloop, Security, compliance, and Risk management teams on the right, get a single pane of glass where they can define security and compliance policies, what evidence and artifacts they want to receive, and where to store them. On the left, developers are shielded from all this complexity by being given simple instructions on what to provide when instrumenting their CI/CD pipelines.
- Graph-Based Provenance: Every item is connected in a traceable graph, ensuring complete visibility over the software lifecycle.
- Immutable Storage: Artifacts are signed and stored immutably, providing a robust audit trail.
