awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目MCP 服务器关于排名机制媒体报道
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
sigstore avatar

sigstore/policy-controller

0
View on GitHub↗
175 星标·72 分支·Go·7 次浏览

Policy Controller

Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

Features

  • Image Scanning and SBOM - Enforces image signatures in Kubernetes.

Star 历史

sigstore/policy-controller 的 Star 历史图表sigstore/policy-controller 的 Star 历史图表

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Start searching with AI

Policy Controller 的开源替代方案

相似的开源项目,按与 Policy Controller 的功能重合度排序。
  • anchore/syftanchore 的头像

    anchore/syft

    8,399在 GitHub 上查看↗

    Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes container images and filesystems to produce comprehensive inventories of installed packages and dependencies in standard formats. Additionally, it serves as a software attestation tool and an SBOM format converter. The project distinguishes itself through the ability to create cryptographically signed attestations for software inventories to ensure provenance and integrity. It also provides the capability to transform software bills of materials between different industry sche

    Gocontainerscyclonedxdocker
    在 GitHub 上查看↗8,399
  • aquasecurity/trivyaquasecurity 的头像

    aquasecurity/trivy

    36,462在 GitHub 上查看↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    在 GitHub 上查看↗36,462
  • deadnews/pindockdeadnews 的头像

    deadnews/pindock

    2在 GitHub 上查看↗

    Pin and update Docker image digests in Dockerfiles and compose files

    Go
    在 GitHub 上查看↗2
  • anchore/grypeanchore 的头像

    anchore/grype

    12,423在 GitHub 上查看↗

    Grype is a command-line security scanner designed to identify known vulnerabilities within container images, filesystems, and software manifests. It functions as a software composition analysis tool that detects security flaws in application components and open-source libraries to support supply chain security. The tool distinguishes itself by reconstructing the final state of container images through layered filesystem inspection and normalizing diverse package formats into a unified dependency graph. It maintains a local cache of security advisories synchronized from multiple upstream sourc

    Gocontainer-imagecontainerscyclonedx
    在 GitHub 上查看↗12,423
查看 Policy Controller 的所有 11 个替代方案→

常见问题解答

sigstore/policy-controller 是做什么的?

Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

sigstore/policy-controller 的主要功能有哪些?

sigstore/policy-controller 的主要功能包括:Image Scanning and SBOM。

sigstore/policy-controller 有哪些开源替代品?

sigstore/policy-controller 的开源替代品包括: anchore/grype — Grype is a command-line security scanner designed to identify known vulnerabilities within container images,… anchore/syft — Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes… aquasecurity/trivy — Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container… deadnews/pindock — Pin and update Docker image digests in Dockerfiles and compose files. docker/scout-cli — Docker Scout CLI. in-toto/in-toto — in-toto is a framework to protect supply chain integrity.