criticalstack / swollLinks
an experimental suite of applications and APIs for monitoring kernel-level activity on a live Kubernetes cluster
☆69Updated 4 years ago
Alternatives and similar repositories for swoll
Users that are interested in swoll are comparing it to the libraries listed below
Sorting:
- [EXPERIMENTAL] Extend osquery to report on Kubernetes☆228Updated 4 years ago
- ☆112Updated 7 months ago
- 🎟 Voucher creates attestations for Binary Authorization☆74Updated last week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆67Updated this week
- MagTape Policy-as-Code for Kubernetes☆151Updated last year
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated this week
- A kubectl plugin which triggers a Sysdig capture☆102Updated 2 years ago
- ☆37Updated 5 years ago
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- Cloud Native Security Hub - Security Resources☆54Updated 5 years ago
- Administrative tooling for Falco☆116Updated last week
- Manage AppAmormor profiles for Kubernetes cluster☆42Updated 2 years ago
- ptrace-based event producer for udig☆68Updated 3 years ago
- Legacy Optimize Pro controller☆67Updated 2 years ago
- A tool for bootstrapping Kubernetes☆68Updated 4 years ago
- Envoy External Authorization API Bridge To SPIFFE Workload API☆46Updated last year
- sigstore the hard way!☆116Updated 4 months ago
- ☆58Updated 3 years ago
- ☆35Updated 4 years ago
- cloud native software supply chain ☁️🔗☆64Updated 4 years ago
- Security risk analysis for Kubernetes resources☆76Updated 10 months ago
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆63Updated 4 years ago
- A Kubernetes dynamic admission controller that uses WebAssembly policies to validate incoming requests☆25Updated 4 years ago
- COSI Engine☆39Updated 3 years ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated this week
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated last week
- Integrates Spiffe and Vault to have secretless authentication☆96Updated last week
- sigstore installation walkthrough, local☆62Updated last year
- Webhook server that evaluates WebAssembly policies to validate Kubernetes requests☆151Updated this week