mattmoor / zero-friction-actionsLinks
An example repo demonstrating keyless signing with Github Actions
☆11Updated 3 years ago
Alternatives and similar repositories for zero-friction-actions
Users that are interested in zero-friction-actions are comparing it to the libraries listed below
Sorting:
- Sigstore user stories☆30Updated 2 years ago
- Transparenty Immutable Container Image Tags☆20Updated 2 years ago
- Automated Terraform cloud and enterprise drift detection☆37Updated last year
- A library for representing OCI image layers in an abstract filesystem☆27Updated 5 years ago
- Terraform provider to perform OCI image operations☆14Updated this week
- ☆20Updated 4 months ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆65Updated this week
- ☆12Updated 2 years ago
- A Kubewarden Policy that detects usage of deprecated and dropped Kubernetes resources☆17Updated this week
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 3 months ago
- ☆29Updated last year
- Trust Dexter to ensure that all your images are pinned by digest for better security☆30Updated last year
- To manage Docker Content Trust and Notary certificates☆13Updated 2 weeks ago
- Write controller-runtime based k8s controllers that read/write to git, not k8s☆48Updated 4 years ago
- Open Source declarative disk configuration system for Kubernetes☆40Updated 2 years ago
- Integrates Spiffe and Vault to have secretless authentication☆92Updated last week
- Generate K8s RBAC policies based on e2e test runs☆28Updated 4 years ago
- Proof of concept that uses cosign and GitHub's in built OIDC for actions to sign container images, providing a proof that what is in the …☆14Updated 2 years ago
- Kubernetes Admission Controller for Image Scanning using OPA☆50Updated 2 years ago
- ☆23Updated 2 years ago
- Register Cluster-API clusters with Argo-CD☆29Updated this week
- Scans SBOMs for vulnerabilities with Grype☆85Updated this week
- ☆12Updated 5 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last week
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆43Updated last year
- A simple (experimental) tool for generating Kubernetes manifest from templates based on CUE☆25Updated 2 years ago
- OpenCP shim is a simple HTTP server that implements the Kubernetes API server interface. It is a shim that allows you to use the Kubernet…☆14Updated 2 years ago
- Organises Kubernetes manifests into a standard format☆16Updated 9 months ago
- Comparison of Chainguard Images to others☆19Updated this week
- A trivial wrapper around spf13/cobra to simplify some basic patterns☆22Updated last year