opentdf / platformLinks
Persistent data centric security that extends owner control wherever data travels
☆30Updated this week
Alternatives and similar repositories for platform
Users that are interested in platform are comparing it to the libraries listed below
Sorting:
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆487Updated this week
- ☆16Updated last year
- A BOM repository server for distributing CycloneDX BOMs☆77Updated last year
- in-toto Attestation Framework☆279Updated last week
- FedRAMP Requests For Comments (RFCs)☆18Updated this week
- A CLI tool to sign and verify artifacts☆413Updated last week
- Curated list of SPIFFE and SPIRE resources☆56Updated 2 years ago
- Cloud Security Posture security policies☆31Updated 9 months ago
- Go implementation of witness☆37Updated this week
- Visualizer for GUAC☆28Updated 3 weeks ago
- The Compliance Validator☆180Updated this week
- A compliance analysis tool which enables organizations to more quickly articulate their compliance posture and also generate supporting e…☆45Updated last month
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆100Updated 5 months ago
- ☆237Updated last week
- An open source, cloud-native security to protect everything from build to runtime☆303Updated this week
- ☆100Updated 2 months ago
- ☆12Updated this week
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆71Updated 2 years ago
- Documenting your Threat Models with HCL☆431Updated 3 weeks ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆98Updated this week
- Artifact Ratification Framework (CNCF Sandbox)☆267Updated this week
- A list of cloud security tools and vendors.☆169Updated 9 months ago
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆202Updated last week
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- Check SPDX SBOM for NTIA minimum elements☆64Updated last week
- A standard API specification for exchanging supply chain artifacts and intelligence☆82Updated this week
- ☆14Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆99Updated this week
- A toolset for dealing with Cryptography Bill of Materials (CBOM)☆32Updated this week
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago