🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)
☆1,340Jun 22, 2026Updated last week
Alternatives and similar repositories for best-practices-badge
Users that are interested in best-practices-badge are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 📜Automated review of open source software projects☆122Dec 6, 2024Updated last year
- OpenSSF Scorecard - Security health metrics for Open Source☆5,548Updated this week
- Curated list of awesome tools for managing open source programs☆502Jun 8, 2026Updated 3 weeks ago
- ShellCheck, a static analysis tool for shell scripts☆39,621Jun 19, 2026Updated last week
- Vulnerability Static Analysis for Containers☆11,010Updated this week
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- OSS-Fuzz - continuous fuzzing for open source software.☆12,384Updated this week
- The Open Source Discovery Service☆1,154Jun 16, 2026Updated last week
- The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for ope…☆1,039Jun 17, 2026Updated last week
- GitHub Action to get a license overview in SPDX format☆14Dec 24, 2021Updated 4 years ago
- A toolkit for building secure, portable and lean operating systems for containers☆8,628Jun 3, 2026Updated 3 weeks ago
- The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in productio…☆9,658Jun 4, 2026Updated 3 weeks ago
- ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The foc…☆14,643Jun 10, 2026Updated 2 weeks ago
- Repolinter, The Open Source Repository Linter☆465Feb 6, 2026Updated 4 months ago
- Notary is a project that allows anyone to have trust over arbitrary collections of data☆3,287Aug 7, 2024Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Supply-chain Levels for Software Artifacts☆1,883Updated this week
- The sustainoss.org website☆34Jun 19, 2026Updated last week
- Sonobuoy is a diagnostic tool that makes it easier to understand the state of a Kubernetes cluster by running a set of Kubernetes conform…☆3,047Updated this week
- Useful IT policies☆4,891Jan 23, 2024Updated 2 years ago
- Specification to describe the minimum information standard for online community data. Guidelines for describing data about online communi…☆11Apr 11, 2026Updated 2 months ago
- Application Kernel for Containers☆18,626Updated this week
- A handy guide to financial support for open source☆7,680Aug 6, 2025Updated 10 months ago
- Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and sys…☆15,849Updated this week
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆48Jun 15, 2026Updated 2 weeks ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Cloud Native Runtime Security☆9,079Jun 22, 2026Updated last week
- Dockerfile linter, validate inline bash, written in Haskell☆12,241Updated this week
- 🥑 Language focused docker images, minus the operating system.☆22,772Updated this week
- Simple and flexible tool for managing secrets☆22,216Updated this week
- Machine-readable specification for the attestation of security-relevant data.☆76Updated this week
- TODO Group Governance☆100Jun 9, 2026Updated 2 weeks ago
- Kubernetes Security - Best Practice Guide☆2,711Sep 11, 2019Updated 6 years ago
- Bash Automated Testing System☆7,108Sep 27, 2019Updated 6 years ago
- Gives criticality score for an open source project☆1,435Dec 2, 2025Updated 6 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Code signing and transparency for containers and binaries☆6,066Updated this week
- Work with remote images registries - retrieving information, images, signing content☆11,006Updated this week
- The easiest, and most secure way to access and protect all of your infrastructure.☆20,518Updated this week
- Kubernetes Operations (kOps) - Production Grade k8s Installation, Upgrades and Management☆16,631Jun 21, 2026Updated last week
- Template for writing your own contributing guide☆735May 24, 2022Updated 4 years ago
- Prevents you from committing secrets and credentials into git repositories☆13,335Sep 17, 2025Updated 9 months ago
- 📖 OSPOlogy - The Study of OSPOs☆247Jun 15, 2026Updated 2 weeks ago