developer-guy / container-image-sign-and-verify-with-cosign-and-opa
This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)
☆62Updated 3 years ago
Alternatives and similar repositories for container-image-sign-and-verify-with-cosign-and-opa:
Users that are interested in container-image-sign-and-verify-with-cosign-and-opa are comparing it to the libraries listed below
- Detect intrusions that happened in your Kubernetes cluster through audit logs using Falco☆63Updated 3 years ago
- sigstore the hard way!☆110Updated 8 months ago
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆57Updated this week
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆124Updated 3 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆22Updated last week
- A pane of glass between you and your Kubernetes clusters.☆45Updated last year
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆79Updated 3 weeks ago
- OPA Gatekeeper vs Kyverno☆61Updated 3 years ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆64Updated last month
- Scans SBOMs for vulnerabilities with Grype☆79Updated this week
- ☆22Updated 9 months ago
- Enabling Software Supply Chain Security Capabilities in ArgoCD☆82Updated 2 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆64Updated this week
- An example of a kubernetes cluster appropriate for a startup company☆60Updated 2 years ago
- Octant plugin for viewing Starboard security information☆57Updated 2 years ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- ☆35Updated 3 years ago
- ☆20Updated 5 months ago
- Rego policies collection☆162Updated this week
- Plugin for Helm to integrate the sigstore ecosystem☆60Updated last week
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆76Updated 9 months ago
- KubeTrivyExporter is Prometheus Exporter that collects all vulnerabilities detected by aquasecurity/trivy in the kubernetes cluster.☆52Updated last year
- An application that regularly scans all containers in a Kubernetes cluster for vulnerabilities☆50Updated last year
- 🔍 Rekor transparency log monitoring and alerting☆27Updated last year
- Generate K8s RBAC policies based on e2e test runs☆28Updated 3 years ago
- Converts a Terraform module to a Helm Chart☆50Updated 2 years ago
- Fairwinds Base Image Finder CLI☆34Updated last week
- A simple tool for converting Rego (OPA) rule into command.☆28Updated 2 years ago