quay / claircore
foundation modules for scanning container packages and reporting vulnerabilities
☆146Updated this week
Alternatives and similar repositories for claircore:
Users that are interested in claircore are comparing it to the libraries listed below
- Identify image vulnerabilities in Kubernetes pods☆106Updated last month
- Static Analysis Library for Containers☆199Updated last year
- Supply Chain Security in Tekton Pipelines☆254Updated this week
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆137Updated this week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆129Updated last week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆64Updated this week
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆221Updated 7 months ago
- sigstore the hard way!☆111Updated 11 months ago
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆65Updated this week
- ☆64Updated 11 months ago
- go library for processing container images and simulating a squash filesystem☆92Updated this week
- ☆234Updated last week
- 🎟 Voucher creates attestations for Binary Authorization☆73Updated this week
- Prometheus Metrics Exporter for Falco output events☆122Updated this week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆80Updated this week
- A daemon that manages SELinux policies on a filesystem☆37Updated last year
- in-toto Attestation Framework☆266Updated this week
- Cloud Native Security Hub - Security Resources☆54Updated 5 years ago
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆62Updated last week
- A utility to generate SPDX-compliant Bill of Materials manifests☆381Updated last week
- Harbor Scanner Adapter for Anchore Engine and Enterprise☆37Updated this week
- Tekton support for Visual Studio Code☆72Updated 7 months ago
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆125Updated last week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated this week
- Manage cloud provider credentials as Kubernetes CRDs☆66Updated last week
- Operator for deploying and managing Quay☆125Updated last week
- Octant plugin for viewing Starboard security information☆57Updated 3 years ago
- Helm charts for sigstore project☆72Updated this week
- 🔮 ✈️ to integrate OPA Gatekeeper's new ExternalData feature with cosign to determine whether the images are valid by verifying their sig…☆78Updated last year
- Webhook server that evaluates WebAssembly policies to validate Kubernetes requests☆145Updated this week