sethvargo / ratchetLinks
A tool for securing CI/CD workflows with version pinning.
☆877Updated 5 months ago
Alternatives and similar repositories for ratchet
Users that are interested in ratchet are comparing it to the libraries listed below
Sorting:
- Keyless Git signing using Sigstore☆1,044Updated last week
- git-xargs is a command-line tool (CLI) for making updates across multiple Github repositories with a single command.☆1,069Updated last week
- Update multiple repositories in with one command☆1,129Updated this week
- Open source compliance tool for development platforms.☆288Updated 2 years ago
- GitHub App to set and enforce security policies☆1,379Updated last week
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆927Updated this week
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆964Updated last year
- A GitHub App that enforces approval policies on pull requests☆915Updated this week
- Regal is a linter and language server for Rego, bringing your policy development experience to the next level!☆351Updated last week
- Automated changelog tool for preparing releases with lots of customization options☆838Updated this week
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- A Declarative Update Policy Engine☆833Updated this week
- Public Chainguard Images☆641Updated this week
- Language-agnostic SLSA provenance generation for Github Actions☆530Updated last month
- 🐚 Hermit manages isolated, self-bootstrapping sets of tools in software projects.☆730Updated this week
- An anonymous & ephemeral Docker image registry☆683Updated 3 weeks ago
- tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.☆334Updated 3 years ago
- Terratag is a CLI tool that enables users of Terraform to automatically create and maintain tags across their entire set of AWS, Azure, a…☆1,027Updated last week
- Anchore container analysis and scan provided as a GitHub Action☆261Updated this week
- Build OCI images from APK packages directly without Dockerfile☆1,474Updated this week
- GitHub Action for Dagger☆162Updated last month
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆767Updated last year
- Tool and policy library for reviewing Google Kubernetes Engine clusters against best practices☆526Updated 3 weeks ago
- Valet helps facilitate the migration of Azure DevOps, CircleCI, GitLab CI, Jenkins, and Travis CI pipelines to GitHub Actions.☆505Updated 2 years ago
- Publish from GitHub Actions using multi-factor authentication☆294Updated 4 months ago
- Terraform graph beautifier☆387Updated last year
- An open source command line interface that runs checks on infrastructure as code to catch potential deployment issues before deploying.☆474Updated 2 years ago
- A curated list of OPA related tools, frameworks and articles☆853Updated 3 months ago
- Find your total usage on GitHub Actions☆187Updated last year
- A Terraform / OpenTofu state migration tool for GitOps☆1,245Updated 4 months ago