spdx / sbom-landscapeLinks
SPDX SBOM Landscape
☆16Updated last year
Alternatives and similar repositories for sbom-landscape
Users that are interested in sbom-landscape are comparing it to the libraries listed below
Sorting:
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆64Updated this week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last week
- 🏆 CNCF Community Awards☆24Updated 2 months ago
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆43Updated last year
- A Kubewarden Policy that verifies all the signatures of the container images referenced by a Pod☆13Updated this week
- Linux agent used to submit realtime SBOMs and dependency usage information to EdgeBit☆14Updated 6 months ago
- A 'kubectl' plugin that provides insight into the topology of a Kubernetes cluster.☆35Updated 2 years ago
- Sigstore user stories☆30Updated last year
- Integrates Spiffe and Vault to have secretless authentication☆90Updated last week
- depstat is a dependency analyzer for Go modules enabled projects. It runs as part of the Kubernetes CI pipeline to help evaluate dependen…☆36Updated 9 months ago
- Cloud Storage Kubernetes Operator with Go and Operator SDK☆12Updated 4 years ago
- Operator deploying the Observatorium project☆14Updated last year
- SPDX Merge tool☆46Updated 3 months ago
- Kapitan Admission Controller Webhook for secrets mgmt☆37Updated 7 months ago
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Kubernetes operator for Slack☆20Updated 3 weeks ago
- ⭕️Snooping on the Kubernetes OpenAPI communications☆95Updated this week
- Open Source declarative disk configuration system for Kubernetes☆40Updated 2 years ago
- Hermeto is a CLI tool that prefetches your project dependencies to aid in making your container build process hermetic.☆19Updated this week
- Helm Chart for deploying GUAC☆18Updated 2 months ago
- To manage Docker Content Trust and Notary certificates☆13Updated last week
- Framework and scripts to create multiple Kubernetes clusters with kind (K8s in Docker) for local E2E testing and development.☆55Updated this week
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆32Updated 3 months ago
- A Kubernetes dynamic admission controller that uses WebAssembly policies to validate incoming requests☆25Updated 4 years ago
- Buildkit frontend to run Tekton objects locally as well as a tkn plugins☆29Updated 9 months ago
- cloud native software supply chain ☁️🔗☆63Updated 4 years ago
- Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts☆16Updated this week
- ☆20Updated this week
- UI for zot registry☆13Updated last month
- A tool to run workshops with☆42Updated 2 years ago