aquasecurity / trivy-actionLinks
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
☆1,166Updated last month
Alternatives and similar repositories for trivy-action
Users that are interested in trivy-action are comparing it to the libraries listed below
Sorting:
- Anchore container analysis and scan provided as a GitHub Action☆264Updated this week
- A set of GitHub actions for checking your projects for vulnerabilities.☆608Updated 2 months ago
- Terraform GitHub provider☆1,082Updated this week
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆941Updated this week
- GitHub Action for Infracost. See cloud cost estimates for Terraform in pull requests. 💰📉 Love your cloud bill!☆264Updated 11 months ago
- Sets up Terraform CLI in your GitHub Actions workflow.☆1,532Updated this week
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,558Updated this week
- Pause your GitHub Actions workflow and request manual approval from set approvers before continuing☆617Updated last month
- Pike is a tool for determining the permissions or policy required for IAC code☆795Updated last week
- GitHub Action to extract metadata (tags, labels) from Git reference and GitHub events for Docker☆1,085Updated last week
- 🧵 CLI tool for directly patching container images!☆1,513Updated last week
- Language-agnostic SLSA provenance generation for Github Actions☆534Updated 2 months ago
- Kubernetes-native security toolkit☆1,746Updated 2 weeks ago
- A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.☆496Updated 3 weeks ago
- A GitHub action that installs Terraform linter TFLint☆187Updated last week
- A GitHub Action for running the ZAP Full scan☆352Updated 2 months ago
- GitHub action for Hadolint, A Dockerfile linting tool☆252Updated 3 months ago
- A GitHub Action for running the ZAP Baseline scan☆348Updated 2 months ago
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆964Updated last year
- A GitHub action to help you scan your docker image for vulnerabilities☆222Updated 3 years ago
- A curated list of awesome self-hosted GitHub Action runners in a large comparison matrix☆844Updated 11 months ago
- Protect your secrets using Gitleaks-Action☆502Updated 6 months ago
- Public Chainguard Images☆648Updated this week
- Detect, track and alert on infrastructure drift☆2,602Updated 3 months ago
- A GitHub Action for detecting vulnerable dependencies and invalid licenses in your PRs☆770Updated this week
- Update YAML property with dynamic values☆163Updated 7 months ago
- ☆820Updated 2 weeks ago
- GitHub Action to set up Docker Buildx☆1,255Updated this week
- Read your tfstate or HCL to generate a graph specific for each provider, showing only the resources that are most important/relevant.☆1,969Updated 5 months ago
- Vanilla GitHub action to run tfsec☆59Updated 2 years ago