controlplaneio / collieLinks
OSCAL and Kyverno Policy Demo for AWS
☆15Updated 2 years ago
Alternatives and similar repositories for collie
Users that are interested in collie are comparing it to the libraries listed below
Sorting:
- The Compliance Validator☆183Updated this week
- ☆16Updated last year
- ☆255Updated 2 weeks ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆514Updated last week
- Response Engine for managing threats in your Kubernetes☆189Updated 2 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆106Updated this week
- A utility to generate SPDX-compliant Bill of Materials manifests☆437Updated last week
- BigBang the product☆193Updated this week
- BadRobot - Operator Security Audit Tool☆223Updated last week
- A curated list of resources about detecting threats and defending Kubernetes systems.☆404Updated 2 years ago
- A reading list for software supply-chain security.☆366Updated 3 years ago
- Reference security architecture for AI applications☆14Updated 10 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.☆204Updated 2 years ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆231Updated this week
- sigstore the hard way!☆118Updated 6 months ago
- Visualizer for GUAC☆29Updated this week
- (D)ocker(F)ile (C)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆98Updated this week
- This repo is a consolidation of Secure Software Supply Chain resources, such as talks, whitepapers, conferences and more.☆139Updated 3 years ago
- Scans SBOMs for vulnerabilities with Grype☆85Updated last week
- ☆44Updated this week
- ☆23Updated 4 years ago
- A tool to create, transform and attest VEX metadata☆172Updated this week
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security☆229Updated 2 weeks ago
- KBOM - Kubernetes Bill of Materials☆323Updated 6 months ago
- Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.☆20Updated last week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆85Updated this week
- This repository contains the container image scanning tool ORCA☆42Updated 5 months ago
- The Kubernetes Security Profiles Operator☆829Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated last year