Linters
Hadolint
A static analyzer for Dockerfiles that checks shell usage and container image best practices.
Problem it solves
Why it exists.
It catches common Dockerfile mistakes before an image is built.
Optimized for
Where it shines.
Container repositories with repeatable image builds and CI checks.
Use with care
Where not to use it.
Do not ignore runtime security, image scanning, and supply-chain controls.
Components
What it is made of.
- Dockerfile parser
- ShellCheck
- Rules
- CI output
Process
How it works.
- A Dockerfile is parsed
- Rules inspect commands and layers
- Findings are emitted
- The build pipeline acts on severity