Azure / container-scan
A GitHub action to help you scan your docker image for vulnerabilities
☆219Updated 2 years ago
Alternatives and similar repositories for container-scan:
Users that are interested in container-scan are comparing it to the libraries listed below
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 2 years ago
- Anchore container analysis and scan provided as a GitHub Action☆223Updated this week
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated 3 months ago
- Add comments to pull requests where tfsec checks have failed☆167Updated last year
- GitHub Advanced Security Policy as Code☆75Updated this week
- Open source compliance tool for development platforms.☆287Updated last year
- A VS Code Extension for Trivy☆118Updated last year
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆152Updated 7 months ago
- ☆54Updated last year
- GitHub Advance Security Compliance Action☆132Updated 2 years ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- Style guide for Rego☆199Updated 4 months ago
- Cross tooling and interoperability specifications☆160Updated last week
- Plugin for Docker CLI to support SBOM creation using Syft☆154Updated last month
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆95Updated 9 months ago
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆44Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- Pre-commit git hooks for Open Policy Agent (OPA) and Rego development☆66Updated 2 years ago
- The AKS Checklist☆152Updated 4 months ago
- ☆78Updated 8 months ago
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆133Updated 8 months ago
- GitHub Action creating Kubernetes manifest files with Helm, Kustomize, or Kompose☆54Updated this week
- Terrascan GitHub action. Scan infrastructure as code including Terraform, Kubernetes, Helm, and Kustomize file for security best practice…☆53Updated last month
- Evaluate source control (GitHub) security posture☆249Updated last year
- A GitHub Action for running the ZAP Baseline scan☆318Updated last month
- ☆46Updated 6 years ago
- Microsoft Security DevOps for GitHub Actions.☆112Updated 2 months ago
- Examples of Custom Secret Scanning Patterns☆150Updated 6 months ago
- The Snyk Exporter has been archived as it is no longer actively maintained.☆29Updated last year