aquasecurity / trivy-actionLinks
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
☆1,012Updated 3 weeks ago
Alternatives and similar repositories for trivy-action
Users that are interested in trivy-action are comparing it to the libraries listed below
Sorting:
- Anchore container analysis and scan provided as a GitHub Action☆250Updated this week
- A set of GitHub actions for checking your projects for vulnerabilities☆578Updated last month
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆859Updated this week
- Sets up Terraform CLI in your GitHub Actions workflow.☆1,487Updated last week
- GitHub Action for Infracost. See cloud cost estimates for Terraform in pull requests. 💰📉 Love your cloud bill!☆252Updated 5 months ago
- Terraform GitHub provider☆1,018Updated last month
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,426Updated this week
- Pause your GitHub Actions workflow and request manual approval from set approvers before continuing☆552Updated last month
- Kubernetes-native security toolkit☆1,563Updated this week
- Pike is a tool for determining the permissions or policy required for IAC code☆736Updated this week
- Protect your secrets using Gitleaks-Action☆420Updated 2 weeks ago
- A curated list of awesome self-hosted GitHub Action runners in a large comparison matrix☆811Updated 5 months ago
- GitHub action for Hadolint, A Dockerfile linting tool☆229Updated last year
- A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.☆479Updated this week
- A GitHub action that installs Terraform linter TFLint☆171Updated last month
- OpenTofu / Terraform / Terragrunt and Atmos version manager☆1,139Updated 2 weeks ago
- A tool for securing CI/CD workflows with version pinning.☆843Updated last month
- Language-agnostic SLSA provenance generation for Github Actions☆490Updated last month
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆964Updated 11 months ago
- A GitHub Action for running the ZAP Baseline scan☆333Updated last month
- A GitHub Action for running the ZAP Full scan☆323Updated last month
- Public Chainguard Images☆611Updated this week
- Generate Terraform moved blocks automatically for painless refactoring☆840Updated last week
- 🧵 CLI tool for directly patching container images!☆1,377Updated this week
- Detect, track and alert on infrastructure drift☆2,566Updated this week
- Update version constraints in your Terraform / OpenTofu configurations☆608Updated last month
- OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure☆1,419Updated last week
- Read your tfstate or HCL to generate a graph specific for each provider, showing only the resources that are most important/relevant.☆1,895Updated 6 months ago
- Terrascan GitHub action. Scan infrastructure as code including Terraform, Kubernetes, Helm, and Kustomize file for security best practice…☆62Updated 7 months ago
- A Github action for generating Terraform module documentation using terraform-docs and gomplate☆168Updated last month