aquasecurity / trivy-action
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
☆861Updated last week
Alternatives and similar repositories for trivy-action:
Users that are interested in trivy-action are comparing it to the libraries listed below
- Kubernetes-native security toolkit☆1,340Updated this week
- Anchore container analysis and scan provided as a GitHub Action☆223Updated this week
- 🧵 CLI tool for directly patching container images!☆1,110Updated this week
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,140Updated this week
- Security risk analysis for Kubernetes resources☆1,265Updated this week
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆961Updated 4 months ago
- Code signing and transparency for containers and binaries☆4,647Updated this week
- The all-new opentofu.org registry!☆338Updated this week
- A set of GitHub actions for checking your projects for vulnerabilities☆528Updated 4 months ago
- Harden-Runner secures CI/CD workflows by controlling network access and monitoring activities on GitHub-hosted and self-hosted runners☆647Updated this week
- Sets up Terraform CLI in your GitHub Actions workflow.☆1,412Updated last month
- Detect, track and alert on infrastructure drift☆2,495Updated last week
- Pike is a tool for determining the permissions or policy required for IAC code☆608Updated this week
- Moved to https://github.com/aquasecurity/trivy-operator☆1,360Updated last month
- Public Chainguard Images☆565Updated this week
- OpenClarity is an open source tool built to enhance security and observability of cloud native applications and infrastructure☆1,367Updated this week
- Update version constraints in your Terraform configurations☆570Updated 5 months ago
- A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.☆451Updated last week
- A GitHub action that installs Terraform linter TFLint☆153Updated 2 weeks ago
- OpenTofu / Terraform / Terragrunt and Atmos version manager☆808Updated this week
- Reads from existing public and private cloud providers (reverse Terraform) and generates your infrastructure as code on Terraform configu…☆2,229Updated 8 months ago
- A GitHub Action for running the ZAP Baseline scan☆318Updated last month
- Terraform GitHub provider☆928Updated this week
- A tool for securing CI/CD workflows with version pinning.☆777Updated last month
- A GitHub action to help you scan your docker image for vulnerabilities☆219Updated 2 years ago
- A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles☆497Updated 2 months ago
- Read your tfstate or HCL to generate a graph specific for each provider, showing only the resources that are most important/relevant.☆1,781Updated 7 months ago
- 👽 Terraform Orchestration Tool for DevOps. Keep environment configuration DRY with hierarchical imports of configurations, inheritance, …☆857Updated this week