
Minimus has launched Supply Chain Protection and minicli to help enterprises secure open-source dependencies and container environments through automated policy enforcement and security-as-code workflows.
Minimus has announced the general availability of Minimus Supply Chain Protection and minicli, two new offerings designed to help enterprise engineering teams secure open-source software dependencies, manage custom container architectures and automate security through code-based workflows.
The launch addresses the growing challenge of securing millions of open-source packages and deeply nested dependencies across modern application ecosystems. According to Minimus, traditional approaches such as basic malware scanning and building software from scratch often fail to scale effectively against increasingly complex dependency chains.
Minimus Supply Chain Protection introduces a policy enforcement layer for open-source software security. Operating as a pull-through proxy for NPM and PyPI, the solution sits between developers and public repositories, evaluating package metadata such as commit history, ecosystem popularity and cooling-off periods. It then generates automated risk scores and enforces trust policies across environments without disrupting developer workflows.
Alongside it, minicli provides a command-line interface for managing custom container architectures as code. Available via API for macOS and Linux across AMD and ARM architectures, the tool enables teams to inspect container image structures, manage private assets and export image recipes as YAML files.
The new capabilities also allow organisations to integrate container image management directly into Git-based workflows and existing CI/CD pipelines, extending security and infrastructure management through code.
When combined with Minimus Images, which the company says mitigates more than 98% of vulnerabilities in container base images, the new tools provide unified security guardrails across both the operating system and application dependency layers.














































































