mondoohq / cnspecLinks
An open source, cloud-native security to protect everything from build to runtime
☆306Updated this week
Alternatives and similar repositories for cnspec
Users that are interested in cnspec are comparing it to the libraries listed below
Sorting:
- open source, cloud-native, graph-based asset inventory☆357Updated this week
- Inspect certificate authorities in container images☆235Updated 3 weeks ago
- BadRobot - Operator Security Audit Tool☆221Updated 2 weeks ago
- Evaluate source control (GitHub) security posture☆250Updated 2 years ago
- Response Engine for managing threats in your Kubernetes☆165Updated last week
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.☆351Updated 2 months ago
- KBOM - Kubernetes Bill of Materials☆317Updated 3 months ago
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆202Updated this week
- Notice: Postee is no longer under active development or maintenance.☆211Updated last month
- ☸️ Mondoo Client Kubernetes Operator☆38Updated 2 weeks ago
- Open source compliance tool for development platforms.☆286Updated last year
- Scans SBOMs for vulnerabilities with Grype☆82Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆106Updated 6 months ago
- An all-in-one Terraform management tool.☆154Updated 2 years ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆489Updated last week
- Store and access your secrets the Kubernetes native way with any external KMS.☆182Updated last year
- Kubernetes audit logging, when you don't control the control plane☆82Updated this week
- Style guide for Rego☆201Updated 4 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- Kubernetes tool for scanning clusters for network policies and identifying unprotected workloads.☆442Updated 3 weeks ago
- The Terraform Live Graph Extension for Visual Studio Code is a plugin that allows you to generate a live Terraform graph as you code.☆240Updated 2 years ago
- Kubernetes Operator to sync secrets between different secret backends and Kubernetes☆163Updated last month
- (d)ocker(f)ile (c)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆79Updated 2 weeks ago
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆61Updated this week
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- A collection of tools to improve your containerized apps security posture☆144Updated last year
- [alpha] Tool to evaluate upgrade confidence for Kubernetes cluster addons☆140Updated 3 weeks ago
- A collection of reusable Github Actions workflows.☆133Updated this week
- "Terraform best practices as a Pull Request." Codify resources outside of Terraform control, detect drift, estimate cloud costs, identif…☆236Updated 2 months ago
- Add CA certificates into containers☆152Updated last week