Skip to main content
HashiCorpLaunch

HCP Packer adds SBOM vulnerability scanning

What happened

HashiCorp launched SBOM vulnerability scanning on Feb 17th '26.

Source

Article excerpt

Highlighted: the sentence this signal was extracted from

HCP Packer adds SBOM vulnerability scanning. You can now scan the components of your image SBOMs and check them against a known vulnerability database in HCP Packer. HashiCorp is excited to announce the release of SBOM vulnerability scanning, now available in public beta for HCP Packer. HCP Packer is a powerful tool that helps organizations manage the lifecycle of their image artifacts across hybrid-cloud environments. With this release, HashiCorp aim to provide platform teams with further visibility into their images to help address vulnerabilities earlier in the deployment process and shift security left. Artifact visibility. In today's hybrid-cloud world, system images (such as AMIs for Amazon EC2, virtual machines, Docker containers, and more) are the foundation of modern computing infrastructure. They also sit at the very start of the software security supply chain. As organizations increasingly depend on a complex software supply chain that includes both third-party and in-house software packages and dependencies, the need for comprehensive visibility into these components has never been more critical. A popular solution to address artifact visibility is to keep a record of the components with a software bill of materials (SBOM) for each artifact. SBOMs are like an ingredient list on a food item; they list the internal parts that make up the image. Background...

Keep reading with a free account

The rest of this article, and every signal for HashiCorp, is in your free account.

Extracted by Autobound

From the Signal API record
Event
Launch

What this signalsA launch often needs new go-to-market and support spend.

Product
SBOM vulnerability scanning
Takes effect
Feb 17, 2026

The full record

From the Signal API record

Details

Category
Launches

Extraction

Confidence
92%
Detected
Feb 17, 2026
signal_type
news
signal_subtype
launches

Use this data

Get every launch signal for HashiCorp and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at HashiCorp this week?”

  2. Send it to your own tools

    The Signal API returns launch signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full news record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/f32b25c2-a223-4b4e-aade-8c39921952a2 returns this record as JSON. POST /v1/companies/enrich returns every signal for hashicorp.com.

{
  "signal_id": "f32b25c2-a223-4b4e-aade-8c39921952a2",
  "signal_type": "news",
  "signal_subtype": "launches",
  "detected_at": "2026-02-17T18:45:00+00:00",
  "company": {
    "name": "HashiCorp",
    "domain": "hashicorp.com"
  },
  "data": {
    "url": "https://www.hashicorp.com/en/blog/hcp-packer-adds-sbom-vulnerability-scanning",
    "title": "HCP Packer adds SBOM vulnerability scanning",
    "excerpt": "HCP Packer adds SBOM vulnerability scanning.\n\nYou can now scan the components of your image SBOMs and check them against a known vulnerability database in HCP Packer.\n\nHashiCorp is excited to announce the release of SBOM vulnerability scanning, now available in public beta for HCP Packer. HCP Packer is a powerful tool that helps organizations manage the lifecycle of their image artifacts across hybrid-cloud environments. With this release, HashiCorp aim to provide platform teams with further visibility into their images to help address vulnerabilities earlier in the deployment process and shift security left.\n\nArtifact visibility.\n\nIn today's hybrid-cloud world, system images (such as AMIs for Amazon EC2, virtual machines, Docker containers, and more) are the foundation of modern computing infrastructure. They also sit at the very start of the software security supply chain. As organizations increasingly depend on a complex software supply chain that includes both third-party and in-house software packages and dependencies, the need for comprehensive visibility into these components has never been more critical.\n\nA popular solution to address artifact visibility is to keep a record of the components with a software bill of materials (SBOM) for each artifact. SBOMs are like an ingredient list on a food item; they list the internal parts that make up the image.\n\nBackground: Last...",
    "product": "SBOM vulnerability scanning",
    "summary": "HashiCorp launched SBOM vulnerability scanning on Feb 17th '26.",
    "category": "launches",
    "found_at": "2026-02-17T18:45:00Z",
    "planning": false,
    "image_url": "https://www.datocms-assets.com/2885/1763412831-blog-library-product-packer-thestack.png?w=1200&h=630&fit=crop&auto=format",
    "confidence": 0.9197,
    "product_data": {
      "full_text": "SBOM vulnerability scanning",
      "fuzzy_match": true
    },
    "published_at": "2026-02-17T18:45:00Z",
    "effective_date": "2026-02-17",
    "article_sentence": "HashiCorp is excited to announce the release of SBOM vulnerability scanning, now available in public beta for HCP Packer."
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.