ComplianceAsCode / auditree-arboretumLinks
The Auditree common fetchers, checks and harvest reports library.
☆20Updated 2 years ago
Alternatives and similar repositories for auditree-arboretum
Users that are interested in auditree-arboretum are comparing it to the libraries listed below
Sorting:
- The Auditree framework tool to run compliance control checks as unit tests.☆72Updated last year
- osquery input plugin☆10Updated 7 years ago
- Open source tool for processing OSCAL based FedRAMP SSPs☆43Updated last year
- Demo setup for compliance-trestle☆35Updated last week
- GCP PCI-DSS 3.2.1 InSpec Profile☆18Updated 4 years ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated this week
- Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.☆34Updated 8 months ago
- Utilities for programmatic analysis of Cartography data.☆39Updated last week
- NIST OSCAL SDK and CLI☆38Updated 5 years ago
- SBOM Explorer - Discover and pull public SBOMs☆20Updated 6 months ago
- Deploys Zeek on Google Cloud☆27Updated this week
- Reusable infrastructure modules for running TICK stack on GCP☆20Updated 3 weeks ago
- Darkbit Cloud Security Tools☆25Updated 5 years ago
- in-toto is a framework to secure the software supply chain.☆71Updated last week
- Reasonably Usable Self-hosted Version of OPA's Playground☆36Updated 6 months ago
- Enable Falco to read audit logs from EKS☆11Updated 4 years ago
- Hexa Policy Orchestrator enables you to manage all of your access policies consistently across software providers.☆103Updated 6 months ago
- Machine readable cybersecurity compliance standards library for Python, starting with FISMA and NIST Risk Management Framework☆63Updated 5 years ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 10 months ago
- 🎟 Voucher creates attestations for Binary Authorization☆74Updated this week
- ☆37Updated 5 years ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆218Updated this week
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- GCP Auto Remediation Suite for High Risk Events☆43Updated 4 years ago
- Kubernetes Common Configuration Scoring System☆122Updated 3 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- This project demonstrates a series of best practices for improving the security of containerized applications deployed to Kubernetes Engi…☆71Updated last year
- Golang library which provides functionality to evaluate GCP resources against Rego-based policies☆47Updated last week
- YAML schema, examples, and validators for OpenControl format.☆76Updated 6 years ago
- A data access control framework for Open Policy Agent☆37Updated last year