sysdiglabs / benchmark-dockerfile
Github action to benchmark dockerfiles in github repository.
☆12Updated 2 years ago
Alternatives and similar repositories for benchmark-dockerfile:
Users that are interested in benchmark-dockerfile are comparing it to the libraries listed below
- Git action to generate security lint report for Kubernetes workload YAML files on PR☆29Updated 2 years ago
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- ☆18Updated 3 years ago
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆88Updated last week
- ☆54Updated last year
- GitHub actions of KICS scan - Keeping Infrastructure as Code Secure☆47Updated 2 weeks ago
- Sysdig Terraform provider. Allow to handle Sysdig Secure policies as code.☆52Updated this week
- ☆36Updated this week
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- Unified Policy Engine☆49Updated last month
- A GitHub Action for using Conftest☆33Updated 3 years ago
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆48Updated 10 months ago
- Runs Kubesec as GitHub action☆18Updated 3 years ago
- GitHub Action to validate Kubernetes manifest files☆35Updated this week
- Octant plugin for viewing Starboard security information☆57Updated 2 years ago
- vscode extension for tfsec☆30Updated 2 years ago
- A standalone exporter for vulnerability reports and other CRs created by Trivy Operator (formerly Starboard).☆59Updated this week
- Cosign Github Action☆136Updated 2 weeks ago
- CLI for searching Rego policies☆105Updated 3 years ago
- ☆14Updated last year
- Sharable Config Presets for Renovatebot, especially useful for DevOps folks☆48Updated this week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆64Updated last week
- An Action to wrap creating an SBOM via REST API☆15Updated 5 months ago
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆95Updated 10 months ago
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated 4 months ago
- Demos for several kubernetes security features☆63Updated last month
- Terraform provider for the Codefresh API☆18Updated last month
- Anchore container analysis and scan provided as a GitHub Action☆229Updated this week
- ☆46Updated this week