awesome-repositories.com
Blog
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetÀ proposNotre méthodologiePresseServeur MCP
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
step-security avatar

step-security/harden-runner

0
View on GitHub↗
1,206 stars·106 forks·TypeScript·Apache-2.0·2 vueswww.stepsecurity.io↗

Harden Runner

Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

Features

  • Supply Chain Security - Secures CI/CD runners by monitoring and restricting outbound network traffic.

Historique des stars

Graphique de l'historique des stars pour step-security/harden-runnerGraphique de l'historique des stars pour step-security/harden-runner

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Start searching with AI

Alternatives open source à Harden Runner

Projets open source similaires, classés selon le nombre de fonctionnalités partagées avec Harden Runner.
  • aquasecurity/chain-benchAvatar de aquasecurity

    aquasecurity/chain-bench

    774Voir sur GitHub↗

    An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.

    Go
    Voir sur GitHub↗774
  • deislabs/ratifyAvatar de deislabs

    deislabs/ratify

    303Voir sur GitHub↗

    Artifact Ratification Framework (CNCF Sandbox)

    Go
    Voir sur GitHub↗303
  • denysvuika/supply-chain-inspectorAvatar de DenysVuika

    DenysVuika/supply-chain-inspector

    3Voir sur GitHub↗

    A standalone, zero-dependency Node.js script for supply chain security analysis of npm dependencies.

    JavaScript
    Voir sur GitHub↗3
  • anchore/syftAvatar de anchore

    anchore/syft

    8,399Voir sur GitHub↗

    Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes container images and filesystems to produce comprehensive inventories of installed packages and dependencies in standard formats. Additionally, it serves as a software attestation tool and an SBOM format converter. The project distinguishes itself through the ability to create cryptographically signed attestations for software inventories to ensure provenance and integrity. It also provides the capability to transform software bills of materials between different industry sche

    Gocontainerscyclonedxdocker
    Voir sur GitHub↗8,399
Voir les 14 alternatives à Harden Runner→

Questions fréquentes

Que fait step-security/harden-runner ?

Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

Quelles sont les fonctionnalités principales de step-security/harden-runner ?

Les fonctionnalités principales de step-security/harden-runner sont : Supply Chain Security.

Quelles sont les alternatives open-source à step-security/harden-runner ?

Les alternatives open-source à step-security/harden-runner incluent : aquasecurity/chain-bench — An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software… deislabs/ratify — Artifact Ratification Framework (CNCF Sandbox). denysvuika/supply-chain-inspector — A standalone, zero-dependency Node.js script for supply chain security analysis of npm dependencies. en/code-security. grafeas/kritis — Deploy-time Policy Enforcer for Kubernetes applications. anchore/syft — Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes…