awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to tektoncd/chains

Open-source alternatives to Chains

14 open-source projects similar to tektoncd/chains, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Chains alternative.

  • anchore/syftAvatar anchore

    anchore/syft

    8,399Vezi pe GitHub↗

    Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes container images and filesystems to produce comprehensive inventories of installed packages and dependencies in standard formats. Additionally, it serves as a software attestation tool and an SBOM format converter. The project distinguishes itself through the ability to create cryptographically signed attestations for software inventories to ensure provenance and integrity. It also provides the capability to transform software bills of materials between different industry sche

    Gocontainerscyclonedxdocker
    Vezi pe GitHub↗8,399
  • aquasecurity/chain-benchAvatar aquasecurity

    aquasecurity/chain-bench

    774Vezi pe GitHub↗

    An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.

    Go
    Vezi pe GitHub↗774
  • deislabs/ratifyAvatar deislabs

    deislabs/ratify

    303Vezi pe GitHub↗

    Artifact Ratification Framework (CNCF Sandbox)

    Go
    Vezi pe GitHub↗303
  • denysvuika/supply-chain-inspectorAvatar DenysVuika

    DenysVuika/supply-chain-inspector

    3Vezi pe GitHub↗

    A standalone, zero-dependency Node.js script for supply chain security analysis of npm dependencies.

    JavaScript
    Vezi pe GitHub↗3
  • en/code-securityE

    en/code-security

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Find more with AI search
  • grafeas/kritisAvatar grafeas

    grafeas/kritis

    710Vezi pe GitHub↗

    Deploy-time Policy Enforcer for Kubernetes applications

    Go
    Vezi pe GitHub↗710
  • in-toto/attestationAvatar in-toto

    in-toto/attestation

    341Vezi pe GitHub↗

    in-toto Attestation Framework

    Rust
    Vezi pe GitHub↗341
  • os-scar/overlayAvatar os-scar

    os-scar/overlay

    228Vezi pe GitHub↗

    Overlay

    JavaScript
    Vezi pe GitHub↗228
  • sigstore/cosignAvatar sigstore

    sigstore/cosign

    5,667Vezi pe GitHub↗

    Cosign is a tool for signing and verifying software artifacts, primarily those stored in OCI-compatible registries such as container images, Helm charts, SBOMs, and Tekton bundles. It supports keyless signing using ephemeral keys and short-lived certificates from the Sigstore public-good infrastructure, associating signatures with an OpenID Connect identity rather than a long-lived cryptographic key. The project provides multiple signing and verification methods, including private keys, key pairs stored in KMS providers like AWS KMS and Azure Key Vault, and hardware security keys. It can sign

    Go
    Vezi pe GitHub↗5,667
  • sigstore/fulcioAvatar sigstore

    sigstore/fulcio

    859Vezi pe GitHub↗

    Sigstore OIDC PKI

    Go
    Vezi pe GitHub↗859
  • sigstore/rekorAvatar sigstore

    sigstore/rekor

    1,168Vezi pe GitHub↗

    Software Supply Chain Transparency Log

    Go
    Vezi pe GitHub↗1,168
  • slsa-framework/slsaAvatar slsa-framework

    slsa-framework/slsa

    1,881Vezi pe GitHub↗

    Supply-chain Levels for Software Artifacts

    HTML
    Vezi pe GitHub↗1,881
  • spectralops/preflightAvatar spectralops

    spectralops/preflight

    157Vezi pe GitHub↗

    preflight helps you verify scripts and executables to mitigate chain of supply attacks such as the recent Codecov hack.

    Go
    Vezi pe GitHub↗157
  • step-security/harden-runnerAvatar step-security

    step-security/harden-runner

    1,206Vezi pe GitHub↗

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

    TypeScript
    Vezi pe GitHub↗1,206