
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

Enforce security and compliance on Kubernetes clusters via admission controls, resource mutation, background scans, and container image signature…

Run agents like Hermes, LangChain Deep Agents, and OpenClaw more securely inside NVIDIA OpenShell with managed inference

A lightweight alternative to OpenClaw that runs in containers for security. Connects to WhatsApp, Telegram, Slack, Discord, Gmail and other messaging…

A self hosted virtual browser that runs in docker and uses WebRTC.

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

Fast, multi-language vulnerability scanner for open-source dependencies. Scans lockfiles, containers, and source directories against the OSV…

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

Kubernetes policy engine with OPA-based admission control, mutation, and audit for enforcing security and compliance configurations.

Secure OCI container runtime that runs workloads inside lightweight VMs, providing strong isolation across Kubernetes, containerd, and CRI-O with…

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

This repository contains the scanner component for Greenbone Community Edition.

JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…

Open-source Privileged Access Management (PAM) platform providing on-demand, audited access to SSH, RDP, Kubernetes, databases, and RemoteApp…

Developer-first CLI for scanning open-source dependencies, application code, container images, and IaC configurations for vulnerabilities and…