controlplaneio / collie
OSCAL and Kyverno Policy Demo for AWS
☆13Updated last year
Alternatives and similar repositories for collie:
Users that are interested in collie are comparing it to the libraries listed below
- ☆16Updated 11 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆89Updated this week
- ☆11Updated 2 years ago
- Kubernetes audit logging, when you don't control the control plane☆74Updated this week
- Repository for the generation of OSCAL data types☆24Updated last week
- ☆16Updated 2 years ago
- A repository containing Minder rules and profiles recommended by your friends at Stacklok☆23Updated last week
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 2 years ago
- A CLI used to work with the Wolfi OSS project☆60Updated this week
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - for kind (and GKE, RKE2, AKS)☆43Updated this week
- Various tools, images, etc. to support the Wolfi OSS project☆21Updated this week
- GitHub action to run Kubescape scans☆19Updated 4 months ago
- ☆25Updated last year
- An SBOM query language and associated utilities☆54Updated last year
- etcd-k8s-extract takes in an etcd data directory or db file used in kubernetes, extracts the kubernetes resources and then writes the res…☆37Updated 4 months ago
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆59Updated last week
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆21Updated 6 months ago
- Gatecheck CI/CD Validation Tool☆15Updated 3 weeks ago
- ☆14Updated 3 weeks ago
- Run individual controls or full compliance benchmarks for NSA CISA Kubernetes Hardening Guidance across all of your Kubernetes clusters u…☆31Updated 3 weeks ago
- A taxonomy of Kubernetes configuration management tools☆22Updated 3 weeks ago
- Cloud Security Posture security policies☆31Updated 7 months ago
- Slack alert bot for matching Github Audit Events☆10Updated 5 months ago
- sigstore the hard way!☆111Updated 11 months ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆82Updated 4 months ago
- Compare data from multiple vulnerability scanners to get a more complete picture of potential exposures.☆63Updated last year
- A static code analyzer to generate network connection topology for micro-service applications☆16Updated this week
- Cloud Dev & Ops Devcontainer☆41Updated 3 weeks ago