gatecheckdev / gatecheck
Gatecheck CI/CD Validation Tool
☆15Updated 3 weeks ago
Alternatives and similar repositories for gatecheck:
Users that are interested in gatecheck are comparing it to the libraries listed below
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆89Updated this week
- OSCAL and Kyverno Policy Demo for AWS☆13Updated last year
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆85Updated this week
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆49Updated last year
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- The Compliance Validator☆174Updated this week
- Github Action to automatically update digests for container images.☆58Updated last month
- A fuzzy-finder command-line tool for removing resources from terraform state☆38Updated last year
- ☆33Updated this week
- A static code analyzer to generate network connection topology for micro-service applications☆16Updated this week
- Trivy plugin for OCI referrers☆23Updated 11 months ago
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Inspect certificate authorities in container images☆233Updated this week
- Ghat is a tool for updating your GitHub actions and Terraform with the latest version of it dependencies and using immutable hashes inste…☆26Updated last week
- A tool to create, transform and attest VEX metadata☆134Updated last week
- Throw a tag at it and it comes back with a checksum.☆120Updated this week
- CLI for searching Rego policies☆105Updated 3 years ago
- Search an SBOM for licenses and the packages they belong to☆86Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- Terraform provider for Sigstore Cosign☆10Updated last week
- A collection of reusable Github Actions workflows.☆130Updated this week
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆59Updated last week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆81Updated 2 weeks ago
- ☆235Updated this week
- sigstore the hard way!☆111Updated 11 months ago
- Kubernetes audit logging, when you don't control the control plane☆74Updated this week
- Container Hardening Priorities Specification (CHPS)☆26Updated last month
- Format agnostic SBOM tooling☆105Updated this week
- Manages client side git hooks resulting in the ability to create git action pipelines.☆78Updated 10 months ago