Dan Luhring

Staff Software Engineer at Chainguard, Inc

Alexandria, Virginia, United States
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

🤩
Rockstar
🎓
Top School
Dan Luhring is a Staff Software Engineer with 10 years of experience focused on cloud-native build and security tooling, currently at Chainguard in Alexandria, VA. He’s an active open-source contributor to projects that power SBOMs and vulnerability scanning—work across Syft, Grype, Anchore and Chainguard’s melange spans package-format parsing (Poetry, package.json, yarn.lock), SBOM enrichment, and hardening build and release flows. Dan’s contributions frequently improve developer productivity and security posture, from integrating delve-based debugging into ko-build to boosting test coverage and fixing macOS security issues in grype. A Virginia Tech alumnus, he blends backend and DevOps expertise to turn complex build and scanning requirements into reliable, auditable pipelines.
code10 years of coding experience
bookBachelor’s Degree, Bachelor’s Degree at Virginia Tech
stackoverflow-logo

Stackoverflow

Stats
1reputation
0reached
0answers
0questions
github-logo-circle

Github Skills (32)

debugging10
debug10
dockerce10
container10
docker10
pytest10
python10
vulnerability-scanners10
testing10
sbom10
dockers10
container-image10
containers10
security10
go10

Programming languages (13)

CMakefileGoHTMLXSLTHCLTypeScriptDockerfile

Github contributions (5)

github-logo-circle
anchore/grype

Aug 2020 - Jan 2023

A vulnerability scanner for container images and filesystems
Role in this project:
userBack-end Developer & DevOps Engineer
Contributions:232 reviews, 86 commits, 106 PRs in 2 years 5 months
Contributions summary:Dan primarily contributed to the development and maintenance of the `grype` project, a vulnerability scanner for container images. Their work involved updating dependencies, adding new package types, and improving the project's build and release processes. They also modified the logging system and implemented shell completion scripts, indicating a focus on improving usability and maintainability within the project. Furthermore, the user's contributions included implementing security fixes for macOS users.
security-vulnerabilityfilesystemsvulnerability-scannersocivulnerabilities
anchore/syft

Aug 2020 - Jan 2023

CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Role in this project:
userBack-end Developer
Contributions:396 reviews, 105 commits, 122 PRs in 2 years 5 months
Contributions summary:Dan primarily contributed to the development of a Software Bill of Materials (SBOM) tool, focusing on enhancing its capabilities to generate SBOMs from container images and filesystems. Their work included adding support for parsing various package formats, such as Poetry, package.json, and yarn.lock files. The user also improved the Java archive parsing logic and addressed several bug fixes related to package dependency relationships and other cataloging improvements.
filesystemsspdxociclivulnerabilities
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial
Dan Luhring - Staff Software Engineer at Chainguard, Inc