GHOSTby AlphaBravo
CatalogWhy GhostContactAccount
Ghost Container Registry — Secure, signed, FIPS-ready images·Built by AlphaBravo
Catalog/crane

crane

FIPS 140-3Developer tools

Crane is a tool for interacting with remote images and registries. It allows to efficiently inspect, verify and manipulate containers, manifests and image layers as well as checking cryptographic signatures.

OverviewGuidesTags
Signed
SBOM
FIPS
CIS

Pull this image

About

About Crane

Crane is a tool for interacting with remote images and registries. It allows to efficiently inspect, verify and manipulate containers, manifests and image layers as well as checking cryptographic signatures.

Key Features

  • Container Image Manipulation: Pull, push, delete, copy, and inspect container images
  • Multi-Platform Support: Inspect or copy images across different platforms (e.g., linux/amd64, arm64, etc.)
  • Manifest and Layer Tools: Work with manifests, configs, layers, and blobs
  • Authentication Support: Supports various authentication methods including Docker credential helpers
  • Efficient and Scriptable: Built for automation with clean, minimal output and fast performance
  • Cross-platform: Available for Linux, macOS, and Windows

Common Use Cases

  • Image Debugging: Examine image manifests, layers, and configs
  • Cross-Registry Syncing: Copy images between different registries
  • Selective Layer Access: Download or inspect individual layers
  • Multi-platform Image Handling: View and manipulate image variants for different OS/architectures
  • CI/CD Automation: Use in pipelines for efficient registry interactions
  • Image Signing & SBOM Integration: Combine with tools like cosign and SBOM generators

Registry Support

Crane works with any OCI-compliant registry, including:

  • Docker Hub
  • Amazon ECR
  • Google Container Registry (GCR)
  • Azure Container Registry (ACR)
  • GitHub Container Registry (GHCR)
  • Harbor
  • Quay.io
  • And many others

Getting Started

The crane CLI offers a wide range of commands for image and registry manipulation. Some common operations include:

  • crane pull - Pull an image and save it as a tarball
  • crane push - Push a tarball or image to a registry
  • crane copy - Copy an image from one registry to another
  • crane digest - Get the digest of an image
  • crane config - Fetch and inspect image configuration
  • crane manifest - Fetch and inspect the raw manifest
  • crane ls - List repositories or tags in a registry
  • crane delete - Delete an image from a registry
  • crane export - Export image layers and metadata
  • crane append - Append layers to an existing image

This Ghost hardened image provides a secure, minimal environment for running Crane operations in containerized workflows and CI/CD pipelines.

Recently pushed

View all →
0.21.9-alpine3.24-d59db19eb779Alpine
0 CVEs4 MBAug 18
0.21.9-e8e3e3fb0aaa
0 CVEs5 MBAug 18
0.21.9-alpine3.23-52b3828500a3Alpine
0 CVEs

Image details

Distribution
Alpine
Architecture
amd64
Latest size
4 MB
Variants
Base + FIPS
Last pushed
Aug 18, 2026
Last scanned
Aug 20, 2026 · Trivy

Resources

Documentation ↗
Available tags
13 tags
View tags →
Latest digest
sha256:45a610399fee…
4 MB
Aug 18
0.21.9-distroless-0b265ea2d685FIPSDistroless
0 CVEs28 MBAug 18
0.21.9-distroless-deb9372fdd81FIPSDistroless
0 CVEs28 MBAug 13