cyberstars
cyberstars / tools / copacetic

Copacetic

Patch vulnerabilities in container images without rebuilding.

View on GitHub
GoApache-2.0

CLI tool (copa) that directly patches OS-level vulnerabilities in existing container images using BuildKit, without a full rebuild. Consumes vulnerability reports from scanners such as Trivy to apply targeted security updates, shrinking the remediation loop in CI/CD pipelines.