sethvargo / ratchetLinks
A tool for securing CI/CD workflows with version pinning.
☆841Updated 2 weeks ago
Alternatives and similar repositories for ratchet
Users that are interested in ratchet are comparing it to the libraries listed below
Sorting:
- Keyless Git signing using Sigstore☆1,003Updated last week
- git-xargs is a command-line tool (CLI) for making updates across multiple Github repositories with a single command.☆1,017Updated last month
- GitHub App to set and enforce security policies☆1,342Updated 2 weeks ago
- Open source compliance tool for development platforms.☆286Updated last year
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆846Updated 2 weeks ago
- Evaluate source control (GitHub) security posture☆250Updated 2 years ago
- Update multiple repositories in with one command☆1,047Updated 2 weeks ago
- tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.☆325Updated 2 years ago
- An anonymous & ephemeral Docker image registry☆634Updated 9 months ago
- Automated changelog tool for preparing releases with lots of customization options☆777Updated last week
- Anchore container analysis and scan provided as a GitHub Action☆250Updated last week
- A Declarative Dependency Management tool☆757Updated this week
- Public Chainguard Images☆609Updated this week
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆962Updated 10 months ago
- 🧪 Run common networking tests against any site.☆1,018Updated 6 months ago
- A CLI tool to make git changes across many repos, especially useful with Microservices.☆391Updated last month
- A security layer for Git repositories☆535Updated this week
- A GitHub App that enforces approval policies on pull requests☆849Updated last week
- Convert Kubernetes YAML to Golang☆1,262Updated last year
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆751Updated 7 months ago
- Language-agnostic SLSA provenance generation for Github Actions☆485Updated 2 weeks ago
- Terratag is a CLI tool that enables users of Terraform to automatically create and maintain tags across their entire set of AWS, Azure, a…☆984Updated last month
- GitHub Action for Dagger☆151Updated 3 months ago
- Vulnerability scanning just got lazier☆291Updated last month
- Valet helps facilitate the migration of Azure DevOps, CircleCI, GitLab CI, Jenkins, and Travis CI pipelines to GitHub Actions.☆508Updated 2 years ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆488Updated last week
- /ˈheɪvənə/ - Think of it as a swiss army knife for Kubernetes tasks☆333Updated this week
- Regal is a linter and language server for Rego, bringing your policy development experience to the next level!☆315Updated last week
- A curated list of OPA related tools, frameworks and articles☆829Updated last month
- 👽 Terraform Orchestration Tool for DevOps. Keep environment configuration DRY with hierarchical imports of configurations, inheritance, …☆1,095Updated last week