chainguard-dev / melangeLinks
build APKs from source code
☆555Updated this week
Alternatives and similar repositories for melange
Users that are interested in melange are comparing it to the libraries listed below
Sorting:
- Build OCI images from APK packages directly without Dockerfile☆1,513Updated last week
- Public Chainguard Images☆650Updated last week
- Main package repository for production Wolfi images☆1,140Updated this week
- A CLI tool to sign and verify artifacts☆459Updated 3 weeks ago
- krata is a Xen control plane in Rust.☆317Updated 7 months ago
- Sigstore OIDC PKI☆793Updated last week
- Keyless Git signing using Sigstore☆1,054Updated this week
- A collection of reusable Github Actions workflows.☆155Updated this week
- Verify provenance from SLSA compliant builders☆305Updated 2 months ago
- A security layer for Git repositories☆571Updated last week
- Language-agnostic SLSA provenance generation for Github Actions☆543Updated 3 months ago
- Artifact Ratification Framework (CNCF Sandbox)☆283Updated last week
- ☆388Updated last week
- in-toto Attestation Framework☆322Updated last week
- A utility to generate SPDX-compliant Bill of Materials manifests☆437Updated this week
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆513Updated last week
- Software Supply Chain Transparency Log☆1,068Updated last week
- Common go library shared across sigstore services and clients☆498Updated last week
- diff for Docker and OCI container images☆549Updated this week
- Regal is a linter and language server for Rego, bringing your policy development experience to the next level!☆359Updated last week
- ☆254Updated last week
- Supply Chain Security in Tekton Pipelines☆268Updated this week
- A CLI used to work with the Wolfi OSS project☆67Updated this week
- CLI for building OPA policies into OCI images☆250Updated last week
- Cross tooling and interoperability specifications☆175Updated 8 months ago
- Type safe K8s middleware for humans☆217Updated last week
- SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more☆520Updated this week
- Container image registry that serves images built fresh when you ask for them☆237Updated 11 months ago
- A tool to create, transform and attest VEX metadata☆172Updated last week
- Inspect certificate authorities in container images☆240Updated 2 months ago