kubescape / regolibrary
The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.
☆123Updated last week
Alternatives and similar repositories for regolibrary:
Users that are interested in regolibrary are comparing it to the libraries listed below
- Create Kubernetes AdmissionReview requests from Kubernetes resource manifests☆114Updated this week
- Runtime security plug to protect user containers☆65Updated last week
- Response Engine for managing threats in your Kubernetes☆149Updated this week
- Runtime detection and response for malicious events in Kubernetes workloads☆41Updated 11 months ago
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆198Updated this week
- BadRobot - Operator Security Audit Tool☆218Updated this week
- Artifact Ratification Framework (CNCF Sandbox)☆251Updated this week
- Kubernetes audit logging, when you don't control the control plane☆69Updated this week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆128Updated this week
- KBOM - Kubernetes Bill of Materials☆311Updated 4 months ago
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆124Updated 3 years ago
- Style guide for Rego☆200Updated 6 months ago
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆80Updated this week
- Scans SBOMs for vulnerabilities with Grype☆79Updated this week
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security☆191Updated 3 weeks ago
- A kubectl plugin to visualize network policies rules.☆94Updated last year
- This repository offers a comprehensive library of security policies designed to enhance the security of Kubernetes cluster configurations…☆176Updated last year
- Generate a variety of suspect actions that are detected by Falco rulesets☆101Updated this week
- Notice: Postee is no longer under active development or maintenance.☆209Updated this week
- A standalone exporter for vulnerability reports and other CRs created by Trivy Operator (formerly Starboard).☆59Updated this week
- A simple WebUI with latest events from Falco☆117Updated 2 weeks ago
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆57Updated this week
- Kyverno for any JSON!☆82Updated last month
- Administrative tooling for Falco☆91Updated this week
- Trivy kubernetes library☆33Updated this week
- Rego policies collection☆164Updated this week
- sigstore the hard way!☆110Updated 9 months ago
- Falco plugins registry☆87Updated this week
- A utility to generate SPDX-compliant Bill of Materials manifests☆372Updated this week