sigstore / cosign-installerLinks
Cosign Github Action
☆175Updated 2 weeks ago
Alternatives and similar repositories for cosign-installer
Users that are interested in cosign-installer are comparing it to the libraries listed below
Sorting:
- GitHub Action for creating software bill of materials using Syft.☆213Updated 2 weeks ago
- Verify provenance from SLSA compliant builders☆301Updated last month
- Helm charts for sigstore project☆85Updated 3 weeks ago
- Go library for Sigstore signing and verification☆81Updated 2 weeks ago
- A collection of reusable Github Actions workflows.☆153Updated last month
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆152Updated 3 weeks ago
- Runner Container Hooks for GitHub Actions☆124Updated 2 weeks ago
- The GitOps Toolkit container registry scanner☆117Updated last week
- TUF repository for Sigstore trust root☆117Updated this week
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆70Updated last week
- Example of using Actions OIDC token to proxy into a private network☆105Updated 9 months ago
- The GitOps Toolkit source composition and decomposition component☆63Updated last week
- Github Action for installing Helm☆172Updated 2 weeks ago
- ☆54Updated 3 months ago
- Anchore container analysis and scan provided as a GitHub Action☆264Updated 2 weeks ago
- Sigstore's Protocol Buffer specifications☆34Updated this week
- An extension for VS Code which provides support for OPA and the Rego policy language☆124Updated last week
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- GitHub Action to use 'buildah' to build a container image.☆179Updated last year
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated 2 weeks ago
- kubectl plugin for signing Kubernetes manifest YAML files with sigstore☆85Updated 3 weeks ago
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆144Updated last week
- ☆134Updated this week
- Docs and Tutorials for Chainguard☆87Updated this week
- Terraform provider for HashiCorp Cloud Platform.☆61Updated last week
- Action for generating attestations for workflow artifacts☆63Updated 2 weeks ago
- An Action for printing OIDC claims in GitHub Actions.☆117Updated 3 months ago
- Cross tooling and interoperability specifications☆174Updated 7 months ago
- GitOps Toolkit controller that patches container image tags in Git☆195Updated last week
- GitHub Action for Dagger☆163Updated last month