jfrog / build-info-goLinks
build-info-go is a Go library and a CLI, which allows generating build-info for a source code project.
☆74Updated last week
Alternatives and similar repositories for build-info-go
Users that are interested in build-info-go are comparing it to the libraries listed below
Sorting:
- Froggit-Go is a universal Go library, allowing to perform actions on VCS providers.☆47Updated this week
- ☆37Updated last week
- go library for processing container images and simulating a squash filesystem☆98Updated this week
- A CLI used to work with the Wolfi OSS project☆63Updated this week
- Decentralized Package Network☆303Updated last year
- Sigstore user stories☆30Updated last year
- Integrates Spiffe and Vault to have secretless authentication☆90Updated 2 weeks ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆63Updated this week
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆42Updated 2 years ago
- Go library for Sigstore signing and verification☆75Updated this week
- foundation modules for scanning container packages and reporting vulnerabilities☆147Updated this week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆66Updated this week
- SPDX SBOM Landscape☆15Updated last year
- A Kubernetes-native Jenkins pipeline execution orchestrator.☆18Updated 3 months ago
- Collection of Go packages to work with SPDX files☆148Updated 2 weeks ago
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆139Updated this week
- Go module to generate and transform VEX documents☆43Updated this week
- Terraform provider for Sigstore Cosign☆11Updated this week
- ☆64Updated last year
- ☆30Updated this week
- ☆15Updated this week
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆43Updated last year
- Administrative tooling for Falco☆108Updated last week
- Go implementation of the package url spec☆62Updated 4 months ago
- ☆23Updated 2 years ago
- Helm charts for sigstore project☆77Updated last week
- TUF repository for Sigstore trust root☆107Updated this week
- Trivy plugin for OCI referrers☆23Updated last year
- Sigstore's Protocol Buffer specifications☆33Updated this week