$npx skillfedfor your agent

container-inspector

Docker, containers, rootfs and virtual machine related software composition analysis (SCA) utilities.

With conditionsPyPI Software DevelopmentReleased Jan 2026124.9K downloads / moApache-2.0Pure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — container_inspector-33.1.0-py3-none-any.whl
v33.1.0 · released 2026-01-21 · Python >=3.10 · 4 runtime deps: click, attrs, dockerfile_parse, commoncode

Yes, if you need to analyze Docker images offline or programmatically. The package is stable, has low install friction, and solves a specific problem (Docker image forensics and composition analysis) that few other tools address directly. The aging maintenance status and 205-day release gap are minor concerns for a tool focused on stable image format handling. No known vulnerabilities. Not worth installing if you only need to fetch images from registries or scan for vulnerabilities—those are handled by related tools (ScanCode.io, ScanCode Toolkit).AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires POSIX operating system (Linux, macOS); does not run on Windows.
  • Requires Python 3.10 or later.
  • Low friction: pure Python wheel with four straightforward runtime dependencies (click, attrs, dockerfile_parse, commoncode).

License · maintenance · safety

Apache-2.0 (permissive) — Apache-2.0 permissive license allows use in commercial and proprietary projects with minimal restrictions; you must retain license and copyright notices.

last release 2026-01-21 (205 days) · last repo commit 2026-01-21 · 38 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 124,907 downloads/mo, #11,847 on PyPI

Verify before relying

pip install container-inspector

from container_inspector.image import Image
img = Image('path/to/saved/image.tar')
for layer in img.layers:
    print(layer.metadata)
  • Whether the package can parse OCI image layout format (described as 'in progress' in the description but not confirmed as implemented)
  • Actual performance and memory footprint when processing large container images
  • Whether Windows container support mentioned as 'improved' in plans has been implemented
Same gist for agents: .md · .json

What it is and what it does

container-inspector is a command-line and Python library suite for analyzing Docker images saved in the standard `docker save` format. It reads the layered structure of Docker images, parses their metadata, extracts Dockerfiles, and reconstructs what a runtime rootfs would look like by stacking layers according to AUFS conventions (including whiteout file handling). It also detects the Linux distribution of a rootfs using os-release files and can collect package and file inventories from images or layers using pluggable callable handlers.

The package is built on four runtime dependencies: click for CLI scaffolding, attrs for data modeling, dockerfile_parse for Dockerfile analysis, and commoncode for shared utilities. It targets modern Python (3.10+) on POSIX systems and is classified as production-stable, though its maintenance cadence has slowed.

Use it for

  • Extract and analyze the layer structure of Docker images to understand how they were built and what files changed between layers.
  • Parse Dockerfiles and correlate them with actual saved Docker images to trace the relationship between build instructions and runtime artifacts.
  • Collect software package inventories from container images for supply-chain analysis or vulnerability scanning workflows.
  • Detect the base operating system and architecture of a container rootfs to support compatibility or compliance checks.
  • Reconstruct a flattened view of a container's runtime filesystem by layering saved image archives according to AUFS semantics.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need to analyze Docker images offline or programmatically.

The package is stable, has low install friction, and solves a specific problem (Docker image forensics and composition analysis) that few other tools address directly. The aging maintenance status and 205-day release gap are minor concerns for a tool focused on stable image format handling. No known vulnerabilities. Not worth installing if you only need to fetch images from registries or scan for vulnerabilities—those are handled by related tools (ScanCode.io, ScanCode Toolkit).

Install

container-inspector on PyPI

Before you install

Low friction: pure Python wheel with four straightforward runtime dependencies (click, attrs, dockerfile_parse, commoncode). Last release was 205 days ago; repo is active and not archived, though maintenance pace is aging.

Requires POSIX operating system (Linux, macOS); does not run on Windows. Requires Python 3.10 or later.

License in practice

Apache-2.0 permissive license allows use in commercial and proprietary projects with minimal restrictions; you must retain license and copyright notices.

Quickstart

pip install container-inspector

from container_inspector.image import Image
img = Image('path/to/saved/image.tar')
for layer in img.layers:
    print(layer.metadata)

Verify before relying

  • Whether the package can parse OCI image layout format (described as 'in progress' in the description but not confirmed as implemented)
  • Actual performance and memory footprint when processing large container images
  • Whether Windows container support mentioned as 'improved' in plans has been implemented

Package facts

LicenseApache-2.0 permissive
Python supportSupports the current Python release >=3.10
Install frictionLow. Pure-Python wheel
Runtime dependencies
4 packages
clickattrsdockerfile_parsecommoncode
MaintenanceAging 205 days since the last release
Last repo commit
First released
Downloads124,907 / month, #11,847 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableIntended Audience :: DevelopersOperating System :: POSIXProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: Software DevelopmentTopic :: Utilities

Evidence: container_inspector-33.1.0-py3-none-any.whl

Tags

Capabilities
docker image analysiscontainer layer inspectiondockerfile parsingrootfs metadata extractiondocker image forensicscontainer composition analysisvm image inspection
Topics
docker-forensicscontainer-analysissoftware-composition
PyPI keywords
utilitiesdockercontainerociqcowos-releasevirtual-machinevmrootfsscancode

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “docker image analysis”

Give your agent the search over MCP, or paste the wish link into any chat.

More Software Development packages

typing-extensions Worth it
PyPI · Software Development · released Jul 2026

Provides backported and experimental type hints for Python 3.9+, allowing use of newer typing features on older Python versions and enabling early experimentation with type system PEPs before they enter the standard library.

PSF-2.0pure Python · 3.9+
1.9Bdownloads / mo
numpy Worth it
PyPI · Software Development · released Aug 2026

NumPy provides an N-dimensional array object and a comprehensive suite of mathematical, linear algebra, Fourier transform, and random number functions for scientific computing in Python.

BSD-3-Clause AND 0BSD AND MIT AND Zlib AND CC0-1.0compiled wheel · 3.12+
1.1Bdownloads / mo
fastapi Worth it
PyPI · Software Development · released Jul 2026

FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.

MITpure Python · 3.10+
568.6Mdownloads / mo
annotated-doc With conditions
PyPI · Software Development · released Jul 2026

Provides a way to document function parameters, class attributes, return types, and variables inline using Python's `Annotated` type hint syntax instead of traditional docstrings.

MITpure Python · 3.9+
456.2Mdownloads / mo
typer Worth it
PyPI · Software Development · released Aug 2026

Typer builds command-line applications from Python functions using type hints, automatically generating help text, argument parsing, and shell completion.

Install it if you are building CLIs in Python.

MITpure Python · 3.10+
369.3Mdownloads / mo
distlib With conditions
PyPI · Software Development · released Jun 2026

Distlib provides low-level packaging utilities for building, distributing, and managing Python software—including metadata handling, version specifiers, wheel support, script installation, and dependency resolution.

permissive licensepure Python
323.3Mdownloads / mo

See also azure-containerregistry · docker-squash · dockerfile · pytest-container · exasol-integration-test-docker-environment · opentelemetry-resourcedetector-docker · tox-docker · psd-tools · scancode-toolkit · ipsw-parser