docker / buildkit-syft-scannerLinks
BuildKit Syft scanner
☆39Updated last week
Alternatives and similar repositories for buildkit-syft-scanner
Users that are interested in buildkit-syft-scanner are comparing it to the libraries listed below
Sorting:
- Set up your GitHub Actions workflow with a specific version of ORAS☆30Updated last week
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆45Updated 2 years ago
- Various tools, images, etc. to support the Wolfi OSS project☆27Updated last week
- ☆71Updated this week
- A CLI used to work with the Wolfi OSS project☆67Updated last week
- Action for generating attestations for workflow artifacts☆62Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated last week
- Cosign Github Action☆174Updated last week
- A proof-of-concept alternative frontend for buildkit☆84Updated 6 years ago
- CLOWarden is a tool that manages access to resources across multiple services☆59Updated 2 weeks ago
- Trivy plugin for OCI referrers☆23Updated last year
- Go library for Sigstore signing and verification☆81Updated this week
- TUF repository for Sigstore trust root☆117Updated this week
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- OCI transport plugin for apt-get (i.e., apt-get over ghcr.io)☆112Updated this week
- GitHub Action to set up containerd☆19Updated 8 months ago
- GitVote is a GitHub application that allows holding a vote on issues and pull requests☆127Updated last week
- Plugin for Docker CLI to support SBOM creation using Syft☆160Updated 3 weeks ago
- A collection of reusable Github Actions workflows.☆153Updated last month
- Encryption libraries for Encrypted OCI Container images☆174Updated 7 months ago
- Overview of philips-labs helm charts☆17Updated 2 weeks ago
- GitHub Action to check Docker system status in your workflow☆12Updated 2 weeks ago
- Helm Chart for deploying GUAC☆18Updated 6 months ago
- ☆30Updated last week
- A sweet little formatter for YAML☆33Updated 2 weeks ago
- Helm charts for sigstore project☆85Updated last week
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆144Updated last week
- GitHub Action to expose GitHub runtime to the workflow☆83Updated last week
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆33Updated 8 months ago
- Sigstore's Protocol Buffer specifications☆34Updated this week