jetstack / paranoiaLinks
Inspect certificate authorities in container images
☆240Updated last week
Alternatives and similar repositories for paranoia
Users that are interested in paranoia are comparing it to the libraries listed below
Sorting:
- BadRobot - Operator Security Audit Tool☆223Updated 3 weeks ago
- Add CA certificates into containers☆160Updated last week
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆212Updated last week
- Store and access your secrets the Kubernetes native way with any external KMS.☆183Updated 2 years ago
- Scans SBOMs for vulnerabilities with Grype☆85Updated last week
- A collection of reusable Github Actions workflows.☆153Updated 3 weeks ago
- A kubectl plugin to visualize network policies rules.☆99Updated last year
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- sigstore the hard way!☆116Updated 4 months ago
- Kubernetes audit logging, when you don't control the control plane☆90Updated this week
- KBOM - Kubernetes Bill of Materials☆323Updated 4 months ago
- Response Engine for managing threats in your Kubernetes☆186Updated 3 weeks ago
- Runtime security plug to protect user containers☆66Updated this week
- (D)ocker(F)ile (C)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆95Updated 2 months ago
- ForgeMT is a secure, scalable GitHub Actions runner platform for ephemeral workloads. Designed for multi-tenant environments, it automate…☆197Updated this week
- Kubernetes Operator to sync secrets between different secret backends and Kubernetes☆163Updated 4 months ago
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆69Updated last week
- Marvin is a CLI tool that scans a k8s cluster by performing CEL expressions to report potential issues, misconfigurations and vulnerabili…☆200Updated last week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 11 months ago
- An open source, cloud-native security to protect everything from build to runtime☆373Updated last week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆85Updated last week
- Artifact Ratification Framework (CNCF Sandbox)☆281Updated this week
- Kubernetes tool for scanning clusters for network policies and identifying unprotected workloads.☆450Updated 3 weeks ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated last week
- Notice: Postee is no longer under active development or maintenance.☆208Updated 3 months ago
- An SBOM query language and associated utilities☆54Updated last year
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- Style guide for Rego☆203Updated 2 months ago
- Fairwinds Base Image Finder CLI☆39Updated last week
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆61Updated last week