Root is the only platform that delivers complete container stack security: Root Image Catalog (RIC) secures your base OS, runtimes,
and bundled packages with 2,000+ continuously remediated images. Root Library Catalog (RLC) patches your application dependencies (npm, PyPI, Maven, Go, and more) at the versions you run. One vendor. One SLA. Complete coverage.
Every fix is backed by signed proof (provenance, SBOM, VEX, attestation, malware scans).
Five capabilities that eliminate the CVE grind:
Secure Base Images by Default
Swap one line in your Dockerfile to pull Root Image Catalog (RIC) builds with 30-day registry SLA (7-day Enhanced) and 180-second average fix time.
In-Place Library Remediation
Keep pinned dependencies while Root Library Catalog (RLC) delivers contracted fix-rate throughput (1–25+/week) with Critical/High priority and CISA KEV escalation.
Secure Base Images by Default
Every fix ships with provenance, attestation, SBOM (CycloneDX), VEX, malware scan, and before/after CVE delta for audit readiness.
of developer time reclaimed per person each week
average publish time for patched RIC images
immediate reduction in scanner noise after adopting RIC
backlog reduction in 6 months with 10 fixes/week Libraries plan
registry availability backed by Root's SLA and service credits












