cdfoundation / CICD-CybersecurityLinks
CI/CD pipelines are critical touchpoints in modern software development where code-level vulnerabilities, container security, and vulnerability remediation efforts converge. This SIG is dedicated to advancing security tooling within CI/CD pipelines, with a focus on defining best security practices and developing frameworks for secure pipeline.
☆21Updated last week
Alternatives and similar repositories for CICD-Cybersecurity
Users that are interested in CICD-Cybersecurity are comparing it to the libraries listed below
Sorting:
- SIG Software Supply Chain☆16Updated 11 months ago
- Docs and Tutorials for Chainguard☆85Updated last week
- A VS Code Extension for Trivy☆148Updated 3 weeks ago
- Documentation for users of Jenkins project infrastructure☆23Updated 2 weeks ago
- 📈CNCF-created tool for analyzing and graphing developer contributions☆110Updated this week
- Instructions and scripts how to deploy Keptn on K3s☆29Updated 2 years ago
- A Github Action to automatically update digests for container images.☆74Updated last week
- Start securing your secrets and infrastructure by installing Conjur OSS, using Docker and the official Conjur OSS containers on DockerHub…☆37Updated this week
- GitHub Action for creating software bill of materials using Syft.☆204Updated last month
- CDF Events Special Interest Group☆51Updated 11 months ago
- ☆111Updated last week
- A backstage plugin that displays API and collection objects, along with their respective versions, featuring monitoring options and "Run …☆13Updated 8 months ago
- in-toto is a framework to secure the software supply chain.☆71Updated 9 months ago
- Provide a continuous compliance and assurance approach to DevOps that mutually benefits banks, auditors and regulators whilst acceleratin…☆71Updated 4 months ago
- The Aqua Security Provider for Terraform allows you to declaratively define the configuration of your Aqua platform.☆37Updated last week
- Software Supply Chain Security Platform☆352Updated this week
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆139Updated this week
- This is the source repository for https://bestpractices.cd.foundation☆14Updated last year
- Policy Reporter Kyverno Plugin☆15Updated last year
- Examples of SPDX files for software combinations☆136Updated 3 months ago
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆93Updated last week
- Generate SBOMs with gh CLI☆193Updated 4 months ago
- Upbound's reference platform for Microsoft Azure services with Crossplane Resources☆22Updated 2 weeks ago
- Docker Scout GitHub Action☆127Updated 2 months ago
- The Cartografos working group aims to provide tools to help adopters and end-users to navigate the CNCF landscape and the wider cloud nat…☆138Updated 3 weeks ago
- Humanitec Reference Architecture Backstage☆10Updated last month
- Scenario examples for Killercoda.com☆119Updated last year
- Xenit Terraform modules☆34Updated this week
- Jenkins Infrastructure Kubernetes Management☆61Updated this week
- Run Falco in a GitHub Actions to detect suspicious behavior in your CI/CD☆42Updated last month