chainguard-dev / hello-melange-apkoLinks
Demo app duplicated in 5 languages (Go/JavaScript/Python/Ruby/Rust) showing how to go from source code to container image using melange+apko
☆37Updated last year
Alternatives and similar repositories for hello-melange-apko
Users that are interested in hello-melange-apko are comparing it to the libraries listed below
Sorting:
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆68Updated this week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆85Updated 2 weeks ago
- Dynamic GitHub Actions from Wolfi packages☆44Updated 7 months ago
- A collection of reusable Github Actions workflows.☆153Updated 3 weeks ago
- Helm charts for sigstore project☆84Updated last week
- sigstore installation walkthrough, local☆62Updated last week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated this week
- Example repository that demonstrates a supply chain security workflow using Syft, Grype, Cosign☆12Updated 4 years ago
- Cloud Dev & Ops Devcontainer☆43Updated 8 months ago
- Plugin for Helm to integrate the sigstore ecosystem☆67Updated this week
- Trivy plugin for OCI referrers☆23Updated last year
- A CLI used to work with the Wolfi OSS project☆67Updated this week
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated last week
- Add CA certificates into containers☆161Updated this week
- ☆36Updated this week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆151Updated this week
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆85Updated this week
- sigstore the hard way!☆116Updated 4 months ago
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆33Updated 7 months ago
- Overview of philips-labs helm charts☆17Updated last week
- Terraform provider for Sigstore Cosign☆12Updated this week
- Enabling Software Supply Chain Security Capabilities in ArgoCD☆89Updated 3 years ago
- ☆20Updated 6 months ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆35Updated 2 weeks ago
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆79Updated 2 weeks ago
- Helm Chart for deploying GUAC☆18Updated 6 months ago
- Tornjak is a UI and management layer used for brokering human access to one or more SPIRE deployments☆87Updated last week
- Container Storage Interface components for SPIFFE☆63Updated last week
- Beyond RBAC: Implementing Relation-based Access Control for Kubernetes with OpenFGA☆69Updated last year
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆45Updated 2 years ago