Skip to content

Puhti and Mahti computing services have been decommissioned. Puhti and Mahti login nodes and storage services will remain available until 15 October 2026, but are no longer covered by service contracts. Please clean up and migrate your data to Roihu ASAP. See Roihu data migration guide for instructions.

Tag Immutability

Tag immutability prevents container image tags from being overwritten or modified after they are pushed.

Normally, users can push a new image with the same tag (for example latest). This can cause issues because deployments may use different image versions without noticing.

Tag immutability ensures that once a tag is created, it cannot be changed.

Benefits

  • Prevents accidental image overwrites
  • Improves deployment consistency
  • Strengthens supply chain security
  • Ensures traceability of image versions

How to Configure Tag Immutability

To configure tag immutability, open the Project in Satama and go to Policy tab.

Policy tab

Click on Tag Immutability section. Click on Add rule. A pop-up window will open

Add tag Immutability

Create a rule specifying which tags should be immutable.