jetstack / tallyLinks
☆14Updated last year
Alternatives and similar repositories for tally
Users that are interested in tally are comparing it to the libraries listed below
Sorting:
- Scans SBOMs for vulnerabilities with Grype☆82Updated this week
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆202Updated this week
- Fairwinds Base Image Finder CLI☆36Updated last week
- sigstore installation walkthrough, local☆61Updated last year
- Check images in your charts for vulnerabilities☆41Updated 2 weeks ago
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆84Updated last month
- CLI for searching Rego policies☆105Updated 3 years ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- Runtime security plug to protect user containers☆65Updated last week
- Kubernetes Admission Controller for Image Scanning using OPA☆51Updated last year
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆124Updated 3 years ago
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆125Updated last month
- sigstore the hard way!☆115Updated last year
- Style guide for Rego☆201Updated 3 months ago
- A tool to create, transform and attest VEX metadata☆147Updated 2 weeks ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- Integrates Spiffe and Vault to have secretless authentication☆90Updated 2 weeks ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- Pre-commit git hooks for Open Policy Agent (OPA) and Rego development☆66Updated last week
- A Github Action to automatically update digests for container images.☆66Updated 2 months ago
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆66Updated last week
- The Open Policy Agent project standard library.☆100Updated last year
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆133Updated this week
- Plugin for Helm to integrate the sigstore ecosystem☆64Updated 2 weeks ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆98Updated this week
- An SBOM query language and associated utilities☆54Updated last year
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆62Updated 3 years ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 3 weeks ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- [alpha] Controller to override image sources in the event that an image cannot be pulled.☆119Updated last month