Scans SBOMs for vulnerabilities with Grype
☆88Aug 30, 2026Updated this week
Alternatives and similar repositories for vulnerability-operator
Users that are interested in vulnerability-operator are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆235Updated this week
- Vulnerability Scanner Suite based on grype and syft from anchore☆54May 5, 2022Updated 4 years ago
- An query language and interactive tooling to work with SBOM data.☆15Oct 7, 2024Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆242Aug 13, 2024Updated 2 years ago
- Example repository that demonstrates a supply chain security workflow using Syft, Grype, Cosign☆12Sep 15, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Go tool to declaratively bump dependencies.☆13Jul 9, 2026Updated last month
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆68Aug 17, 2026Updated 2 weeks ago
- Easily run Conftest, pull remote policies, surface the results, and obtain test metrics☆13Oct 2, 2025Updated 10 months ago
- A utility to generate SPDX-compliant Bill of Materials manifests☆466Updated this week
- ☆71Updated this week
- vexctl is a tool to attest VEX impact statements☆45Mar 27, 2023Updated 3 years ago
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆10May 19, 2025Updated last year
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆306Updated this week
- sbomasm: The Complete SBOM Management Toolkit☆128Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- GUAC aggregates software security metadata into a high fidelity graph database.☆1,536Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Apr 17, 2023Updated 3 years ago
- Kontinuous - GitOps for Kubernetes 🥷☆11Mar 19, 2026Updated 5 months ago
- A tool to create, transform and attest VEX metadata☆210Updated this week
- GitHub Action for creating software bill of materials using Syft.☆256Updated this week
- Supply Chain Integrity Model☆108Jun 12, 2023Updated 3 years ago
- Manages client side git hooks resulting in the ability to create git action pipelines.☆78Jul 5, 2024Updated 2 years ago
- ☆18Jan 11, 2022Updated 4 years ago
- tutorials made for @cryptoparty & other security/teaching stuff☆12Jan 17, 2016Updated 10 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Transparenty Immutable Container Image Tags☆20Jul 5, 2023Updated 3 years ago
- Vulnerability scanning just got lazier☆328Aug 1, 2026Updated 3 weeks ago
- Visualizer for GUAC☆39Aug 13, 2026Updated 2 weeks ago
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD …☆210Updated this week
- Kubernetes Admission Controller for Image Scanning using OPA☆50Sep 18, 2023Updated 2 years ago
- A kubectl plugin to explore ingresses -> services -> workloads☆17Jun 1, 2020Updated 6 years ago
- ☆51Updated this week
- GitHub Action to check Docker system status in your workflow☆13Aug 12, 2026Updated 2 weeks ago
- SBOM Move - Automate build and transfer of SBOMs across systems☆27Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A collection of tools to improve your containerized apps security posture☆152May 26, 2024Updated 2 years ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆775Dec 11, 2024Updated last year
- Dynamic GitHub Actions from Wolfi packages☆45May 5, 2026Updated 3 months ago
- The plumber you'll hire to install all your Kubernetes network plumbing☆23Jun 30, 2026Updated 2 months ago
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆127Dec 2, 2021Updated 4 years ago
- A GitHub Action to find and annotate vulnerable Go code☆15Aug 24, 2026Updated last week
- A magic shim for Docker credential helpers 🪄☆72Jan 18, 2022Updated 4 years ago