
cosign
Code signing and transparency for containers and binaries

Code signing and transparency for containers and binaries

OpenSSF Scorecard - Security health metrics for Open Source

Data pipelines for cloud config and security data. Build cloud asset inventory, CSPM, FinOps, and vulnerability management solutions. Extract from…

This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

💻🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.

Kubernetes policy engine with OPA-based admission control, mutation, and audit for enforcing security and compliance configurations.

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Generates SCAP, Ansible, Bash, and CEL security content for compliance evaluation and automated hardening across Linux hosts, containers, and…

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using…

Infrastructure as code for DNS!

Parallel backup and restore solution for PostgreSQL with encryption, delta restore, and multi-cloud object store support for enterprise disaster…

secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

Open-source sandboxed agent harness for teams. Giving every employee a secured personal agent.

Static analysis rule pack for detecting security vulnerabilities, dangerous code patterns, and configuration issues across many languages; integrates…

Automated Security Testing For REST API's

Chaos testing, network emulation, and stress testing tool for containers