Snyk/container Images
Snyk Container Images — container image scanning and vulnerability data
2026.08.28.2
Hardened codegen: instance names sanitized against path traversal; 429 rate-limit retry with Retry-After; string schema patterns emit regex validation; output schemas passthrough unknown fields.
Global Arguments
| Argument | Type | Description |
|---|---|---|
| apiToken | string | Snyk API token |
| orgId | string | Snyk organization ID |
| version | string | Snyk API version date |
| Argument | Type | Description |
|---|---|---|
| image_ids? | string | A comma-separated list of Image IDs |
| platform? | enum | The image Operating System and processor architecture |
| names? | string | The container registry names |
| Argument | Type | Description |
|---|---|---|
| image_id | string | Image ID |
| Argument | Type | Description |
|---|---|---|
| image_id | string | Image ID |
Resources
2026.08.28.1
Changed: Normalized the extension license to Apache-2.0 and corrected the copyright holder to "Sean Escriva". Extensions that previously shipped an MIT LICENSE.md are now Apache-2.0, consistent with the repository root and every other extension. No code or behavioral changes.
Upgrade note: License text only. No API, schema, or runtime behavior changed.
2026.08.26.2
Fixed: Restored inline npm:zod@4.4.3 import specifiers so the registry
quality scorer can resolve dependencies and score the extension. An earlier
release used a bare "zod" import-map specifier, which published but scored as
unscored.
Changed: Retained explicit compilerOptions.strict in deno.json. No
behavioral or schema changes.
2026.08.26.2
Fixed: Restored inline npm:zod@4.4.3 import specifiers so the registry
quality scorer can resolve dependencies and score the extension. An earlier
release used a bare "zod" import-map specifier, which published but scored as
unscored.
Changed: Retained explicit compilerOptions.strict in deno.json. No
behavioral or schema changes.
2026.08.25.1
Changed: Updated labels for improved extension discoverability. Added cross-cutting category labels (security, observability, finops, infrastructure, networking, compliance, devops, ai, incident-response) where applicable.
updated labels
2026.08.24.1
Added: Output metadata attributes for observability.
durationMs: Method execution duration in milliseconds.collectedBy: Extension name that produced the data.fetchedAt: ISO 8601 timestamp when data was fetched (added to resources that previously lacked it).
2026.08.21.2
Changed: Snyk API request failures now name the HTTP method and path that
was attempted (e.g. Snyk API GET /orgs/{orgId}/container_images failed with HTTP 403: ...) instead of surfacing only the raw status and body.
Network-level failures (DNS, timeout, connection reset) are also caught and
re-raised with the same method/path context and the original error preserved
as cause, rather than propagating an unlabeled fetch error.
Upgrade note: No changes to stored resource schemas. Existing instances need no migration.
2026.08.21.1
Changed: Schema tightening sweep — no behavioral changes.
- Added
.min(1)toapiTokenandorgIdin the global arguments schema. - Added
.describe(...)to previously undocumented fields:layers,names, andplatformon the container image schema;platform,target_id, andtarget_referenceon the image target reference schema.
2026.07.19.1
Added: Initial code-generated release of @webframp/snyk/container-images with 3 methods covering the Snyk container images API surface.
- Has README or module doc2/2earned
- README has a code example1/1earned
- README is substantive1/1earned
- Most symbols documented1/1earned
- No slow types (deprecated)1/1earned
- Dependencies pass trust audit2/2earned
- Has description1/1earned
- Platform support declared (or universal)2/2earned
- License declared1/1earned
- Verified public repository2/2earned