sethvargo / ratchetLinks
A tool for securing CI/CD workflows with version pinning.
☆884Updated 7 months ago
Alternatives and similar repositories for ratchet
Users that are interested in ratchet are comparing it to the libraries listed below
Sorting:
- Keyless Git signing using Sigstore☆1,052Updated this week
- GitHub App to set and enforce security policies☆1,384Updated last week
- git-xargs is a command-line tool (CLI) for making updates across multiple Github repositories with a single command.☆1,075Updated last month
- Open source compliance tool for development platforms.☆286Updated 2 years ago
- A GitHub App that enforces approval policies on pull requests☆923Updated this week
- Build OCI images from APK packages directly without Dockerfile☆1,509Updated last week
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆946Updated this week
- Tool and policy library for reviewing Google Kubernetes Engine clusters against best practices☆526Updated 2 months ago
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆964Updated last year
- Automated changelog tool for preparing releases with lots of customization options☆850Updated this week
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.☆333Updated 3 years ago
- Regal is a linter and language server for Rego, bringing your policy development experience to the next level!☆358Updated last week
- Public Chainguard Images☆649Updated this week
- A security layer for Git repositories☆570Updated last week
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆767Updated last year
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆827Updated 10 months ago
- 🧵 CLI tool for directly patching container images!☆1,518Updated this week
- Main package repository for production Wolfi images☆1,134Updated this week
- Update multiple repositories in with one command☆1,153Updated this week
- A Declarative Update Policy Engine☆853Updated this week
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆512Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆293Updated this week
- A curated list of OPA related tools, frameworks and articles☆857Updated last week
- A CLI tool to make git changes across many repos, especially useful with Microservices.☆397Updated 2 months ago
- Find your total usage on GitHub Actions☆187Updated last year
- Language-agnostic SLSA provenance generation for Github Actions☆542Updated 3 months ago
- Terratag is a CLI tool that enables users of Terraform to automatically create and maintain tags across their entire set of AWS, Azure, a…☆1,038Updated last month
- Vulnerability scanning just got lazier☆316Updated this week
- Cloud native secrets management for developers - never leave your command line for secrets.☆3,162Updated last year