openpubkey / verify-docker-cli-plugin
A docker CLI plugin for verifying signed attestations on images
☆13Updated last year
Alternatives and similar repositories for verify-docker-cli-plugin:
Users that are interested in verify-docker-cli-plugin are comparing it to the libraries listed below
- Sigstore user stories☆30Updated last year
- Simple example for using an in-cluster BuildKit instance for container builds☆19Updated 6 years ago
- Create a dedicated IaaS instance per Pod to mitigate container breakout (including CPU vulnerabilities depending on the instance type)☆22Updated 5 years ago
- Transparenty Immutable Container Image Tags☆20Updated last year
- ☆23Updated 2 years ago
- An query language and interactive tooling to work with SBOM data.☆14Updated 7 months ago
- A library for representing OCI image layers in an abstract filesystem☆27Updated 4 years ago
- Integrates Spiffe and Vault to have secretless authentication☆88Updated this week
- A CLI used to work with the Wolfi OSS project☆60Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated last week
- native go library for installation and management of apk packages☆29Updated 11 months ago
- To manage Docker Content Trust and Notary certificates☆12Updated last week
- ☆20Updated 9 months ago
- Go implementation for CNAB content trust verification using TUF, Notary, and in-toto☆31Updated last year
- A sweet little formatter for YAML☆23Updated this week
- OCI viewer☆17Updated last month
- A Kubewarden Policy that detects usage of deprecated and dropped Kubernetes resources☆16Updated this week
- Tool to interact with Docker registry objects.☆25Updated 6 months ago
- Example project using SLSA 3 Generic Generator with GoReleaser☆10Updated last year
- Pluggable generator for creating, using and sharing reusable templates that can be applied directly, generated into operator, helm chart …☆11Updated 3 years ago
- Terraform provider to perform OCI image operations☆13Updated this week
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- Go module implementing general types to represent any way of referencing images within distribution☆36Updated 3 weeks ago
- A Jenkins plugin to track steps and create in-toto link metadata☆11Updated 10 months ago
- Ergonomic OCI registry Go API☆16Updated last year
- A High-Availability distribution of Knative.☆20Updated last year
- A trivial wrapper around spf13/cobra to simplify some basic patterns☆22Updated last year
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆43Updated last year
- Pulls and unpacks a container image to the local filesystem. Usable both as a standalone CLI tool, and as a go module.☆33Updated last week
- Library to work with linux namespaces in go☆34Updated last year