m-mizutani / ghaudit
CLI audit tool for GitHub organization with OPA/Rego
☆12Updated last year
Alternatives and similar repositories for ghaudit:
Users that are interested in ghaudit are comparing it to the libraries listed below
- ☆32Updated 3 months ago
- Lint your Rego policies inside of Visual Studio Code☆15Updated 7 months ago
- A simple tool for converting Rego (OPA) rule into command.☆28Updated 2 years ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- ☆56Updated 2 years ago
- Integrates Spiffe and Vault to have secretless authentication☆85Updated this week
- ☆9Updated 5 years ago
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 7 months ago
- OPA Dependency Manager (ODM)☆12Updated 7 months ago
- JSON query library, based on Rego☆18Updated 4 years ago
- Transparenty Immutable Container Image Tags☆20Updated last year
- An SBOM query language and associated utilities☆54Updated last year
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆147Updated this week
- ☆52Updated this week
- ☆32Updated 5 years ago
- 🖥️ 👓 Monitor your OPA Gatekeeper via Grafana Dashboard☆14Updated 4 years ago
- Lambda function for verifying signed images in ECS☆33Updated 10 months ago
- A repository containing a collection of "glue" modules for encapsulating common Cloud Run patterns.☆15Updated this week
- A GitHub Action for using Conftest☆33Updated 3 years ago
- conftest plugin that transforms k8s input object to be compatible with gatekeeper policies☆14Updated last year
- Practically and gracefully stop your K8s node on (termination|scale down|maintenance)☆13Updated 4 years ago
- vexctl is a tool to attest VEX impact statements☆44Updated last year
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- 🔍 Rekor transparency log monitoring and alerting☆27Updated last year
- Hot-swap Kubernetes clusters while keeping your service up and running.☆51Updated 2 years ago
- oci and apk explorer☆48Updated 2 weeks ago
- cloud native software supply chain ☁️🔗☆63Updated 3 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- ☆41Updated 2 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last week