Fully managed container image registry supporting public and private repositories, OCI artefacts (Helm charts, SBOMs), automatic image scanning with Inspector integration, lifecycle policies, cross-region and cross-account replication, and pull-through caches for upstream registries
Jurisdictional exposure
Attributes
- SLA Uptime
- 99.9%
- Encryption
- Yes
Sub-services (4)
Private Repositories
IAM-gated image repositories with lifecycle policies and replication
ECR Public
Public gallery for distributing open-source container images worldwide
Pull-Through Cache
Transparent caching proxy for upstream registries (Docker Hub, Quay, GitHub)
Enhanced Scanning
Continuous vulnerability scanning powered by Amazon Inspector
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (6)
- AWS European Sovereign Cloud (Brandenburg) · BrandenburgAWS European Sovereign Cloud
- AWS GovCloud (US-East) · AshburnAWS GovCloud (US)
- AWS GovCloud (US-West) · HillsboroAWS GovCloud (US)
- AWS European Sovereign Cloud (Brandenburg) · BrandenburgAWS European Sovereign Cloud
- China (Beijing) · BeijingAWS China (Sinnet)
- China (Ningxia) · YinchuanAWS China (NWCD)
Commercial regions (34)
Europe (8)
- Europe (Paris)
- Europe (Frankfurt)
- Europe (Ireland)
- Europe (Milan)
- Europe (Spain)
- Europe (Stockholm)
- Europe (Zurich)
- Europe (London)
North America (7)
- Canada West (Calgary)
- Canada (Central)
- Mexico (Central)
- US East (N. Virginia)
- US West (Oregon)
- US East (Ohio)
- US West (N. California)
South America (1)
- South America (São Paulo)
Asia (11)
- Asia Pacific (Hong Kong)
- Asia Pacific (Hyderabad)
- Asia Pacific (Mumbai)
- Asia Pacific (Jakarta)
- Asia Pacific (Osaka)
- Asia Pacific (Tokyo)
- Asia Pacific (Malaysia)
- Asia Pacific (Singapore)
- Asia Pacific (Seoul)
- Asia Pacific (Taipei)
- Asia Pacific (Thailand)
Oceania (3)
- Asia Pacific (Melbourne)
- Asia Pacific (Sydney)
- Asia Pacific (New Zealand)
Middle East (3)
- Middle East (Bahrain)
- Israel (Tel Aviv)
- Middle East (UAE)
Africa (1)
- Africa (Cape Town)
Tags
Equivalent services on other platforms
Managed container registry supporting Docker and Helm chart artifacts with personal and enterprise editions, geo-replication, vulnerability scanning, P2P image acceleration, and integrated signing via cosign/Notary V2
OCI-compliant private container registry hosted in Aruba's Italian data centres with vulnerability scanning and direct integration with Managed Kubernetes pull credentials
Managed private Docker and OCI container registry service with geo-replication, image scanning, signed content trust, and integration with AKS and Azure DevOps
Universal package manager for Docker, Helm, Maven, npm, Python, APT, and Yum artifacts — successor to Container Registry, with IAM-scoped repositories, regional storage, and Cloud Build integration
Deploy-time policy enforcement for GKE, Cloud Run, and Anthos that requires containers to be signed by trusted attestors before they can run, with break-glass bypass, continuous validation at runtime, and Cloud Build integration for automated attestation signing
Managed container image registry compatible with Docker V2 and OCI Image specs, with organisations and image-access control, cross-region replication, trigger-based pipelines, and automatic CVE scanning
Private container image registry for IBM Cloud with multi-tenant namespaces, automatic vulnerability scanning via Vulnerability Advisor, image-signing with Notary, quota management, and cross-region replication
OCI-compliant private container registry hosted in IONOS EU datacentres with built-in vulnerability scanning, retention policies, and direct integration with Managed Kubernetes pull credentials
Enterprise container registry with geo-replication, vulnerability scanning (Clair), build triggers, and fine-grained access control — available as Quay.io SaaS or self-managed
Managed OCI-native container registry compatible with OCI Image Format 1.1 and Docker v2, with IAM-scoped repositories, image signing via OCI Vault keys, automatic vulnerability scanning, and replication across OCI regions
OCI-compliant private container registry hosted in OTC's German datacentres with vulnerability scanning, retention policies, and direct integration with CCE pull credentials
Managed Harbor-based private container registry hosted in OVHcloud EU regions with vulnerability scanning, retention policies, and image-signing support
OCI-compliant private container registry with built-in vulnerability scanning, retention policies, and direct integration with Kubernetes Kapsule pull credentials
OCI-compliant private container registry hosted in STACKIT Germany datacentres with vulnerability scanning and direct integration with Kubernetes Engine pull credentials
Managed OCI-compatible container registry with Personal and Enterprise editions, namespace-level IAM, cross-region replication, P2P image pull acceleration, Helm chart hosting, and automatic CVE scanning integrated with Cloud Workload Protection Platform