Azure / container-scan
A GitHub action to help you scan your docker image for vulnerabilities
☆221Updated 2 years ago
Alternatives and similar repositories for container-scan:
Users that are interested in container-scan are comparing it to the libraries listed below
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- Anchore container analysis and scan provided as a GitHub Action☆236Updated this week
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated 6 months ago
- CLI for searching Rego policies☆105Updated 3 years ago
- Add comments to pull requests where tfsec checks have failed☆167Updated last year
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆155Updated 10 months ago
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆47Updated this week
- Pre-commit git hooks for Open Policy Agent (OPA) and Rego development☆66Updated 3 years ago
- GitHub Action for creating software bill of materials using Syft.☆180Updated 2 weeks ago
- GitHub Advanced Security Policy as Code☆82Updated last week
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Style guide for Rego☆200Updated 3 weeks ago
- A VS Code Extension for Trivy☆125Updated 2 weeks ago
- GitHub Advance Security Compliance Action☆133Updated 2 years ago
- ☆49Updated this week
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆133Updated 11 months ago
- Open source compliance tool for development platforms.☆286Updated last year
- Plugin for Docker CLI to support SBOM creation using Syft☆156Updated 3 weeks ago
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆186Updated last week
- ☆80Updated 11 months ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- The Snyk Exporter has been archived as it is no longer actively maintained.☆29Updated last year
- Regal is a linter and language server for Rego, bringing your policy development experience to the next level!☆296Updated this week
- ☆71Updated last week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last week
- ☆55Updated last year
- GitHub actions of KICS scan - Keeping Infrastructure as Code Secure☆47Updated 3 weeks ago
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆90Updated this week
- The AKS Checklist☆153Updated 7 months ago
- Terrascan GitHub action. Scan infrastructure as code including Terraform, Kubernetes, Helm, and Kustomize file for security best practice…☆57Updated 4 months ago