quay / claircore
foundation modules for scanning container packages and reporting vulnerabilities
☆144Updated this week
Alternatives and similar repositories for claircore:
Users that are interested in claircore are comparing it to the libraries listed below
- Identify image vulnerabilities in Kubernetes pods☆106Updated 4 months ago
- Static Analysis Library for Containers☆199Updated last year
- Supply Chain Security in Tekton Pipelines☆252Updated this week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆64Updated last week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆126Updated last week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆65Updated this week
- Go implementation of the package url spec☆56Updated 2 months ago
- ✨🔐 CNCF Fuzzers☆117Updated this week
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆80Updated 2 months ago
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆135Updated this week
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆61Updated this week
- Helpers for going from apis and clients to useful runtime constructs☆96Updated this week
- Convert Falco logs to Docker seccomp profiles☆20Updated 8 years ago
- go library for processing container images and simulating a squash filesystem☆89Updated this week
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆90Updated this week
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated this week
- Pipelines-as-Code for Tekton☆147Updated this week
- ☆120Updated this week
- Administrative tooling for Falco☆91Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- ☆231Updated this week
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆220Updated 5 months ago
- Tekton support for Visual Studio Code☆71Updated 5 months ago
- Helm charts for sigstore project☆70Updated last week
- Manage cloud provider credentials as Kubernetes CRDs☆64Updated last month
- ☆35Updated 3 years ago
- Runtime security plug to protect user containers☆65Updated this week
- Cloud Native Security Hub - Security Resources☆54Updated 4 years ago
- The Deployment Validator Operator (DVO) checks deployments and other resources against a curated collection of best practices.☆57Updated this week
- Caching service for source code and external dependencies☆60Updated this week