awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
spectralops avatar

spectralops/preflight

0
View on GitHub↗
157 stele·44 fork-uri·Go·Apache-2.0·2 vizualizărigithub.com/spectralops/preflight↗

Preflight

preflight helps you verify scripts and executables to mitigate chain of supply attacks such as the recent Codecov hack.

Features

  • DevOps Security - Verifies scripts and executables to mitigate supply chain attacks.
  • Supply Chain Security - Verifies scripts and executables to prevent supply chain attacks.

Istoric stele

Graficul istoricului de stele pentru spectralops/preflightGraficul istoricului de stele pentru spectralops/preflight

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Alternative open-source pentru Preflight

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu Preflight.
  • aquasecurity/chain-benchAvatar aquasecurity

    aquasecurity/chain-bench

    774Vezi pe GitHub↗

    An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.

    Go
    Vezi pe GitHub↗774
  • aquasecurity/trivyAvatar aquasecurity

    aquasecurity/trivy

    36,462Vezi pe GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Vezi pe GitHub↗36,462
  • baalmor/cve-apeAvatar baalmor

    baalmor/cve-ape

    5Vezi pe GitHub↗

    A CVE scanner which can process a pkglist.

    Python
    Vezi pe GitHub↗5
  • anchore/syftAvatar anchore

    anchore/syft

    8,399Vezi pe GitHub↗

    Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes container images and filesystems to produce comprehensive inventories of installed packages and dependencies in standard formats. Additionally, it serves as a software attestation tool and an SBOM format converter. The project distinguishes itself through the ability to create cryptographically signed attestations for software inventories to ensure provenance and integrity. It also provides the capability to transform software bills of materials between different industry sche

    Gocontainerscyclonedxdocker
    Vezi pe GitHub↗8,399
Vezi toate cele 19 alternative pentru Preflight→

Întrebări frecvente

Ce face spectralops/preflight?

preflight helps you verify scripts and executables to mitigate chain of supply attacks such as the recent Codecov hack.

Care sunt principalele funcționalități ale spectralops/preflight?

Principalele funcționalități ale spectralops/preflight sunt: DevOps Security, Supply Chain Security.

Care sunt câteva alternative open-source pentru spectralops/preflight?

Alternativele open-source pentru spectralops/preflight includ: aquasecurity/chain-bench — An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software… aquasecurity/trivy — Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container… baalmor/cve-ape — A CVE scanner which can process a pkglist. deislabs/ratify — Artifact Ratification Framework (CNCF Sandbox). denysvuika/supply-chain-inspector — A standalone, zero-dependency Node.js script for supply chain security analysis of npm dependencies. anchore/syft — Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes…