Azure / container-scan
A GitHub action to help you scan your docker image for vulnerabilities
☆221Updated 2 years ago
Alternatives and similar repositories for container-scan:
Users that are interested in container-scan are comparing it to the libraries listed below
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- Anchore container analysis and scan provided as a GitHub Action☆241Updated this week
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated 7 months ago
- A VS Code Extension for Trivy☆131Updated this week
- GitHub actions of KICS scan - Keeping Infrastructure as Code Secure☆48Updated 2 weeks ago
- Open source compliance tool for development platforms.☆286Updated last year
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- GitHub Action for creating software bill of materials using Syft.☆185Updated last week
- The AKS Checklist☆153Updated last week
- A GitHub Action for running the ZAP Baseline scan☆326Updated 5 months ago
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Add comments to pull requests where tfsec checks have failed☆167Updated last year
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆48Updated this week
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆90Updated 3 weeks ago
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆96Updated last year
- Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities☆945Updated last month
- GitHub Action to validate Kubernetes manifest files☆35Updated this week
- GitHub Advanced Security Policy as Code☆82Updated 2 weeks ago
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆154Updated 10 months ago
- Plugin for Docker CLI to support SBOM creation using Syft☆156Updated 3 weeks ago
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆133Updated last year
- Notice: Postee is no longer under active development or maintenance.☆211Updated 2 weeks ago
- Trivy's misconfiguration scanning engine☆218Updated 3 months ago
- ☆80Updated last year
- GitHub action for Hadolint, A Dockerfile linting tool☆220Updated last year
- Github Action for installing Helm☆154Updated last week
- GitHub Advance Security Compliance Action☆133Updated 2 years ago
- Github action to benchmark dockerfiles in github repository.☆12Updated 2 years ago
- CLI for searching Rego policies☆105Updated 3 years ago
- Generate SBOMs with gh CLI☆183Updated 2 weeks ago