Azure / container-scanLinks
A GitHub action to help you scan your docker image for vulnerabilities
☆222Updated 3 years ago
Alternatives and similar repositories for container-scan
Users that are interested in container-scan are comparing it to the libraries listed below
Sorting:
- Anchore container analysis and scan provided as a GitHub Action☆267Updated this week
- Security configuration checks for popular cloud native applications and infrastructure.☆119Updated 3 years ago
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated last year
- GitHub Action for creating software bill of materials using Syft.☆219Updated this week
- ☆56Updated 2 years ago
- Add comments to pull requests where tfsec checks have failed☆169Updated 2 years ago
- A VS Code Extension for Trivy☆162Updated last week
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- GitHub actions of KICS scan - Keeping Infrastructure as Code Secure☆52Updated last month
- GitHub Action to create Kubernetes cluster secrets☆40Updated last week
- Style guide for Rego☆203Updated last month
- ☆181Updated this week
- ☆67Updated this week
- Plugin for Docker CLI to support SBOM creation using Syft☆161Updated 2 months ago
- CLI for searching Rego policies☆105Updated 4 years ago
- An Action to wrap creating an SBOM via REST API☆20Updated last month
- The Snyk Exporter has been archived as it is no longer actively maintained.☆30Updated 2 years ago
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- Vanilla GitHub action to run tfsec☆59Updated 2 years ago
- A GitHub Action for running the ZAP Baseline scan☆349Updated last week
- An extension for VS Code which provides support for OPA and the Rego policy language☆125Updated this week
- Tau is a thin wrapper on top of terraform to manage multiple deployments, dependencies and secrets.☆74Updated 10 months ago
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆95Updated last week
- vscode extension for tfsec☆30Updated 3 years ago
- An example pipeline for executing HashiCorp Terraform with ephemeral cloud provider credentials managed by HashiCorp Vault☆51Updated 4 years ago
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆58Updated this week
- Language-agnostic SLSA provenance generation for Github Actions☆543Updated 3 months ago
- GitHub Action creating Kubernetes manifest files with Helm, Kustomize, or Kompose☆64Updated this week
- Run HashiCorp Packer as part of your GitHub Actions Workflow☆156Updated 3 weeks ago
- Cross tooling and interoperability specifications☆175Updated 8 months ago