aquasecurity / trivy-checksLinks
☆62Updated last week
Alternatives and similar repositories for trivy-checks
Users that are interested in trivy-checks are comparing it to the libraries listed below
Sorting:
- A tool to create, transform and attest VEX metadata☆168Updated last week
- A VS Code Extension for Trivy☆156Updated 2 weeks ago
- Protect GitHub Actions with Tracee☆80Updated 10 months ago
- Security configuration checks for popular cloud native applications and infrastructure.☆119Updated 3 years ago
- Run Falco in a GitHub Actions to detect suspicious behavior in your CI/CD☆42Updated 2 months ago
- A collection of reusable Github Actions workflows.☆153Updated 3 weeks ago
- Kubernetes audit logging, when you don't control the control plane☆90Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆284Updated last week
- ☆51Updated 2 weeks ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆78Updated this week
- Verify provenance from SLSA compliant builders☆299Updated last month
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆88Updated last week
- Notice: Postee is no longer under active development or maintenance.☆208Updated 3 months ago
- Add comments to pull requests where tfsec checks have failed☆168Updated 2 years ago
- Trivy's misconfiguration scanning engine☆215Updated 10 months ago
- GitHub Action for creating software bill of materials using Syft.☆212Updated last week
- ☆22Updated 2 weeks ago
- Runtime Security Solution for your CI/CD Pipeline☆112Updated last month
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆60Updated 2 years ago
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆54Updated last month
- Response Engine for managing threats in your Kubernetes☆186Updated last month
- A standalone exporter for vulnerability reports and other CRs created by Trivy Operator (formerly Starboard).☆62Updated last week
- A utility to generate SPDX-compliant Bill of Materials manifests☆428Updated this week
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆129Updated 2 weeks ago
- A Github Action to automatically update digests for container images.☆81Updated this week
- A CLI tool to sign and verify artifacts☆449Updated last month
- Scans SBOMs for vulnerabilities with Grype☆85Updated last week
- Pre-commit git hooks for Open Policy Agent (OPA) and Rego development☆67Updated 5 months ago
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆213Updated last week