# Chainguard Containers concepts

URL: https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts.md

Conceptual articles and resources on Chainguard Containers

## Pages

- [Chainguard shared responsibility model](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/shared-responsibility-model.md): Reference guide outlining Chainguard's shared responsibility model: a framework that clarifies security obligations for hardened container images.
- [Understanding Chainguard's container image categories](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/container-categories.md): Reference guide outlining how Chainguard Containers are categorized.
- [Chainguard's container variants](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/container-variants.md): Learn about Chainguard's development container images and how they differ from our standard images.
- [Getting started with distroless container images](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/getting-started-distroless.md): Why distroless containers are more secure: Chainguard's approach removes shells, package managers, and unnecessary components to minimize attack surface while maintaining compatibility
- [Choosing a base container for your compiled programs](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/choosing-a-base-container.md): An overview comparing various Chainguard Containers for compiled programs
- [glibc vs. musl](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/glibc-vs-musl.md): An overview of the differences between glibc and musl.
- [How Chainguard creates container images with low-to-no CVEs](https://deploy-preview-3927--ornate-narwhal-088216.netlify.app/chainguard/containers/concepts/zerocve.md): The three practices behind the low CVE counts in Chainguard Containers — minimal package sets, nightly rebuilds, and security advisories — and how to verify them with a scanner yourself

