Scans SBOMs for vulnerabilities with Grype
☆88Aug 8, 2026Updated this week
Alternatives and similar repositories for vulnerability-operator
Users that are interested in vulnerability-operator are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆233Updated this week
- Vulnerability Scanner Suite based on grype and syft from anchore☆54May 5, 2022Updated 4 years ago
- Labeled vulnerability-package match pairs used as ground truth to evaluate vulnerability scanners☆14Jul 21, 2026Updated 3 weeks ago
- An query language and interactive tooling to work with SBOM data.☆15Oct 7, 2024Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆242Aug 13, 2024Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Example repository that demonstrates a supply chain security workflow using Syft, Grype, Cosign☆12Sep 15, 2021Updated 4 years ago
- Go tool to declaratively bump dependencies.☆13Jul 9, 2026Updated last month
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆67Aug 3, 2026Updated last week
- Easily run Conftest, pull remote policies, surface the results, and obtain test metrics☆13Oct 2, 2025Updated 10 months ago
- A utility to generate SPDX-compliant Bill of Materials manifests☆461Updated this week
- ☆71Updated this week
- vexctl is a tool to attest VEX impact statements☆45Mar 27, 2023Updated 3 years ago
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆10May 19, 2025Updated last year
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆299Updated this week
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- sbomasm: The Complete SBOM Management Toolkit☆124Updated this week
- GUAC aggregates software security metadata into a high fidelity graph database.☆1,524Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Apr 17, 2023Updated 3 years ago
- Kontinuous - GitOps for Kubernetes 🥷☆11Mar 19, 2026Updated 4 months ago
- A tool to create, transform and attest VEX metadata☆206Updated this week
- GitHub Action for creating software bill of materials using Syft.☆254Updated this week
- Supply Chain Integrity Model☆108Jun 12, 2023Updated 3 years ago
- Manages client side git hooks resulting in the ability to create git action pipelines.☆78Jul 5, 2024Updated 2 years ago
- ☆17Jan 11, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- tutorials made for @cryptoparty & other security/teaching stuff☆12Jan 17, 2016Updated 10 years ago
- Transparenty Immutable Container Image Tags☆20Jul 5, 2023Updated 3 years ago
- Visualizer for GUAC☆39Updated this week
- Vulnerability scanning just got lazier☆326Aug 1, 2026Updated last week
- A simple, powerful, and extensible Go logging framework suitable for stylized command line utilities and multi-writer logging☆23Aug 13, 2024Updated last year
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD …☆210Updated this week
- Kubernetes Admission Controller for Image Scanning using OPA☆50Sep 18, 2023Updated 2 years ago
- A kubectl plugin to explore ingresses -> services -> workloads☆17Jun 1, 2020Updated 6 years ago
- ☆51Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- GitHub Action to check Docker system status in your workflow☆13Updated this week
- SBOM Move - Automate build and transfer of SBOMs across systems☆27Jul 10, 2026Updated last month
- A collection of tools to improve your containerized apps security posture☆152May 26, 2024Updated 2 years ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆774Dec 11, 2024Updated last year
- Dynamic GitHub Actions from Wolfi packages☆45May 5, 2026Updated 3 months ago
- The plumber you'll hire to install all your Kubernetes network plumbing☆23Jun 30, 2026Updated last month
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆127Dec 2, 2021Updated 4 years ago