jetstack / paranoiaLinks
Inspect certificate authorities in container images
☆240Updated last week
Alternatives and similar repositories for paranoia
Users that are interested in paranoia are comparing it to the libraries listed below
Sorting:
- BadRobot - Operator Security Audit Tool☆223Updated last month
- A kubectl plugin to visualize network policies rules.☆97Updated last year
- Add CA certificates into containers☆159Updated last week
- Kubernetes audit logging, when you don't control the control plane☆88Updated this week
- An open source, cloud-native security to protect everything from build to runtime☆323Updated this week
- Scans SBOMs for vulnerabilities with Grype☆85Updated last week
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- A collection of reusable Github Actions workflows.☆147Updated this week
- Response Engine for managing threats in your Kubernetes☆180Updated last week
- (D)ocker(F)ile (C)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆93Updated last month
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 10 months ago
- Runtime security plug to protect user containers☆66Updated last week
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆69Updated 2 months ago
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆208Updated last week
- ForgeMT is a secure, scalable GitHub Actions runner platform for ephemeral workloads. Designed for multi-tenant environments, it automate…☆194Updated last week
- Store and access your secrets the Kubernetes native way with any external KMS.☆183Updated 2 years ago
- sigstore the hard way!☆116Updated 3 months ago
- An SBOM query language and associated utilities☆54Updated last year
- Marvin is a CLI tool that scans a k8s cluster by performing CEL expressions to report potential issues, misconfigurations and vulnerabili…☆199Updated last month
- Vulnerability scanning just got lazier☆303Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- Kubernetes Operator to sync secrets between different secret backends and Kubernetes☆163Updated 3 months ago
- Artifact Ratification Framework (CNCF Sandbox)☆279Updated this week
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated this week
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆126Updated 3 years ago
- Integrates Spiffe and Vault to have secretless authentication☆93Updated 3 weeks ago
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆85Updated 2 months ago
- Style guide for Rego☆203Updated last month
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- Linux Process Discovery. C Library, Go bindings, Runtime.☆223Updated 3 years ago