Golden Images across clouds
Machine images built and versioned by the platform - EC2 Image Builder, Azure Compute Gallery, Compute Engine custom images - with a family or version that instances resolve, encryption with your key, and sharing by policy.
3 verified modules - all static-validated and publish-checked; live-test pending.
Compare by provider
| Provider | Module | Verification |
|---|---|---|
| AWS | A Golden AMI Pipeline that Rebuilds on a Schedule, Tests and Scans | static-validated |
| Azure | Golden Images that Boot Trusted, Stay Private and Expire | static-validated |
| Google Cloud | A Custom Image in a Family, Encrypted with Your Key and Shared by IAM | static-validated |
How to choose
Compare whether the service builds the image or only stores it (Image Builder builds and tests; the gallery and a Compute Engine image store what Packer or a build VM made), how a new version rolls out (a family pointer, a version number, a latest tag), how the image is shared across accounts or projects, and how far it replicates.
When not to use
An image ages from the day it is built. Without a rebuild schedule the golden image is a snapshot of the patches from last quarter with a nicer name, and the fleet built from it inherits every one.