Upstream choice: tell us if osscontainertools/kaniko has something you need
These images build from chainguard-forks/kaniko. The reasons are in the README under Support and provenance: a commercial security organization stands behind it, it releases on a dependency and CVE cadence, and it carries the FIPS lineage the -fips variants depend on. osscontainertools/kaniko is the active community fork, with its own release stream and feature work.
We want to hear from people who use these images. The most useful thing to tell us is specific: a feature or a fix in osscontainertools/kaniko that your builds need and these images lack, with a link to it and a sentence on how you use it. If you think the trade-off itself is wrong, say what you weigh differently.
A change of upstream would be decided in this issue, announced here, and carried out by pointing KANIKO_VERSION at the new source, with the FIPS variants re-verified before the first release from it.
Comment here so the signal stays in one place. A thumbs-up on a comment that already says what you would say counts.