Checks whether Docker is deployed according to security best practices as defined in the CIS Docker Benchmark
☆222Jan 28, 2025Updated last year
Alternatives and similar repositories for docker-bench
Users that are interested in docker-bench are comparing it to the libraries listed below
Sorting:
- Checks whether a Linux server according to security best practices as defined in the CIS Distribution-Independent Linux Benchmark☆184Jan 12, 2026Updated last month
- Common code for hardening benchmarks☆10Jul 14, 2025Updated 7 months ago
- Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark☆7,951Feb 23, 2026Updated last week
- Static Analysis Library for Containers☆197Jun 14, 2023Updated 2 years ago
- Scan your container images for package vulnerabilities with Aqua Security☆860Apr 28, 2021Updated 4 years ago
- Show who has RBAC permissions to perform actions on different resources in Kubernetes☆905Jul 17, 2024Updated last year
- Hunt for security weaknesses in Kubernetes clusters☆5,005Mar 19, 2024Updated last year
- The aqua-operator is a group of controllers that runs within a Kubernetes or Openshift cluster that provides a means to deploy and manage…☆39Dec 31, 2025Updated 2 months ago
- CIS Docker Benchmark - InSpec Profile☆524May 2, 2023Updated 2 years ago
- Security configuration checks for popular cloud native applications and infrastructure.☆119Feb 16, 2022Updated 4 years ago
- The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in productio…☆9,598Oct 21, 2024Updated last year
- Superseded by https://github.com/aquasecurity/trivy-operator☆1,373Feb 3, 2026Updated last month
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆225Sep 16, 2024Updated last year
- [EXPERIMENTAL] Extend osquery to report on Kubernetes☆230Mar 4, 2021Updated 4 years ago
- Notice: Postee is no longer under active development or maintenance.☆206Feb 22, 2026Updated last week
- Kubernetes Inventory Beacon tool☆21Sep 24, 2021Updated 4 years ago
- Enables scanning of docker builds in Jenkins for OS package vulnerabilities.☆35Jul 16, 2023Updated 2 years ago
- ☆12Updated this week
- OWASP Foundation Web Repository☆13Oct 9, 2025Updated 4 months ago
- Vulnerability Static Analysis for Containers☆10,932Updated this week
- A service that analyzes docker images and scans for vulnerabilities☆1,591Jan 26, 2023Updated 3 years ago
- Cloud Native Runtime Security☆8,690Feb 23, 2026Updated last week
- Security risk analysis for Kubernetes resources☆515Jan 23, 2025Updated last year
- A lightweight workshop build on the shoulders of giants.☆18Sep 13, 2019Updated 6 years ago
- A standalone exporter for vulnerability reports and other CRs created by Trivy Operator (formerly Starboard) and Kubescape.☆62Feb 24, 2026Updated last week
- Security risk analysis for Kubernetes resources☆1,441Feb 16, 2026Updated 2 weeks ago
- ☆192Feb 9, 2026Updated 3 weeks ago
- Operator to manage RBAC permissions for groups across subsets of namespaces☆34Feb 18, 2026Updated 2 weeks ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆69Updated this week
- A tool to scan Kubernetes cluster for risky permissions☆1,412May 25, 2025Updated 9 months ago
- Deploy-time Policy Enforcer for Kubernetes applications☆708Dec 5, 2025Updated 2 months ago
- Linux Runtime Security and Forensics using eBPF☆4,388Feb 18, 2026Updated last week
- Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start☆3,220Jan 6, 2025Updated last year
- Go beyond package manager discovery for SBOM☆18Feb 22, 2022Updated 4 years ago
- Review Access - kubectl plugin to show an access matrix for k8s server resources☆1,387Apr 5, 2023Updated 2 years ago
- a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containe…☆1,219May 23, 2023Updated 2 years ago
- Static analysis for CloudFormation templates to identify common misconfiguration☆56Feb 16, 2022Updated 4 years ago
- Notary is a project that allows anyone to have trust over arbitrary collections of data☆3,288Aug 7, 2024Updated last year
- Go client and SDK for Falco☆55Jan 19, 2026Updated last month