Awesome Cloud Native
Section: Security & Compliance · Container signing, verification, and provenance powered by Sigstore.
Entry
Appears in 6 awesome lists
Container signing, verification, and transparency log for OCI artifacts.
Section: Security & Compliance · Container signing, verification, and provenance powered by Sigstore.
Section: Supply Chain · Container signing, verification, and transparency log for OCI artifacts.
Section: Zero Trust · Container Signing, Verification and Storage in an OCI registry.
Section: Go · Code signing and transparency for containers and binaries
Section: 容器技术 · 容器签名和验证
Section: Other · Code signing and transparency for containers and binaries
🟢⚠️ — Autonomous AI penetration-testing platform that orchestrates specialized web, AD, Kubernetes, CMS, and framework agents through an MCP-controlled Docker toolbox with local privacy-tokenization for sensitive target data. — note: GPL-3.0 licensed; heavy Docker/LLM stack, use only for…;…
A Simple and Comprehensive Vulnerability Scanner for Containers and other Artifacts, Suitable for CI. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). Checks containers and filesystems.
🆓 Open-source Identity and Access Management. Supports OIDC, OAuth 2 and SAML 2, LDAP and AD directories, password policies.
Static analysis for infrastructure as code manifests (Terraform, Kubernetes, Cloudformation, Helm, Dockerfile, Kustomize) find security misconfiguration and fix them.
🟢 — Experimental runner for coding agents in hardware-isolated microVMs with copy-on-write workspace snapshots, egress profiles, selective secret forwarding, and file-by-file review before applying changes. (Stacklok) — note: APIs and behavior are explicitly experimental; workspace-mode=direct…
star:8295 A CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.
Pomerium is a zero-trust context and identity aware access gateway inspired by BeyondCorp.
A tool for securely accessing secrets. A secret is anything that you want to tightly control access to, such as API keys, passwords, certificates, and more.