Scans SBOMs for vulnerabilities with Grype
☆88Jul 19, 2026Updated this week
Alternatives and similar repositories for vulnerability-operator
Users that are interested in vulnerability-operator are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆233Updated this week
- Vulnerability Scanner Suite based on grype and syft from anchore☆53May 5, 2022Updated 4 years ago
- Labeled vulnerability-package match pairs used as ground truth to evaluate vulnerability scanners☆14Updated this week
- An query language and interactive tooling to work with SBOM data.☆15Oct 7, 2024Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆241Aug 13, 2024Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Example repository that demonstrates a supply chain security workflow using Syft, Grype, Cosign☆12Sep 15, 2021Updated 4 years ago
- Go tool to declaratively bump dependencies.☆13Jul 9, 2026Updated last week
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆66Jul 14, 2026Updated last week
- Easily run Conftest, pull remote policies, surface the results, and obtain test metrics☆13Oct 2, 2025Updated 9 months ago
- ☆70Updated this week
- vexctl is a tool to attest VEX impact statements☆45Mar 27, 2023Updated 3 years ago
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆11May 19, 2025Updated last year
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆297Updated this week
- sbomasm: The Complete SBOM Management Toolkit☆121Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- GUAC aggregates software security metadata into a high fidelity graph database.☆1,518Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Apr 17, 2023Updated 3 years ago
- Kontinuous - GitOps for Kubernetes 🥷☆11Mar 19, 2026Updated 4 months ago
- A utility to generate SPDX-compliant Bill of Materials manifests☆461Updated this week
- A tool to create, transform and attest VEX metadata☆204Updated this week
- GitHub Action for creating software bill of materials using Syft.☆252Updated this week
- Supply Chain Integrity Model☆108Jun 12, 2023Updated 3 years ago
- ☆17Jan 11, 2022Updated 4 years ago
- Transparenty Immutable Container Image Tags☆20Jul 5, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Vulnerability scanning just got lazier☆326Jul 10, 2026Updated last week
- A simple, powerful, and extensible Go logging framework suitable for stylized command line utilities and multi-writer logging☆23Aug 13, 2024Updated last year
- Kubernetes Admission Controller for Image Scanning using OPA☆50Sep 18, 2023Updated 2 years ago
- A kubectl plugin to explore ingresses -> services -> workloads