quay / claircoreLinks
foundation modules for scanning container packages and reporting vulnerabilities
☆147Updated last week
Alternatives and similar repositories for claircore
Users that are interested in claircore are comparing it to the libraries listed below
Sorting:
- Static Analysis Library for Containers☆197Updated 2 years ago
- Identify image vulnerabilities in Kubernetes pods☆107Updated last week
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆141Updated last week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last week
- Supply Chain Security in Tekton Pipelines☆260Updated last week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆149Updated this week
- Administrative tooling for Falco☆114Updated last week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆67Updated this week
- Kubernetes Pod Security Standards implementation - https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacem…☆101Updated last week
- Cloud Native Security Hub - Security Resources☆54Updated 5 years ago
- go library for processing container images and simulating a squash filesystem☆100Updated this week
- Prometheus Metrics Exporter for Falco output events☆121Updated 7 months ago
- ☆111Updated 7 months ago
- ☆125Updated this week
- Manage AppAmormor profiles for Kubernetes cluster☆42Updated 2 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆68Updated this week
- ☆64Updated last year
- Go client and SDK for Falco☆55Updated 2 months ago
- sigstore the hard way!☆116Updated 3 months ago
- Sidecar for managing OPA instances in Kubernetes.☆252Updated 3 weeks ago
- Checks whether a Linux server according to security best practices as defined in the CIS Distribution-Independent Linux Benchmark☆178Updated last week
- Webhook server that evaluates WebAssembly policies to validate Kubernetes requests☆151Updated this week
- The SPIFFE Helper is a tool that can be used to retrieve and manage SVIDs on behalf of a workload☆62Updated this week
- Octant plugin for viewing Starboard security information☆57Updated 3 years ago
- [EXPERIMENTAL] Extend osquery to report on Kubernetes☆228Updated 4 years ago
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆225Updated last year
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆68Updated this week
- Manage cloud provider credentials as Kubernetes CRDs☆70Updated this week
- Collection of Go packages to work with SPDX files☆154Updated 3 weeks ago
- Go implementation of the package url spec☆63Updated 8 months ago