devsecops topic
lzone-cheat-sheets
A collection of SRE / DevOps / system architecture cheat sheets hosted on https://lzone.de
awesome-policy-as-code
A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.
OpenSCA-cli
OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the...
kccss
Kubernetes Common Configuration Scoring System
DevSecOpsGuideline
The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.
RiskAssessmentFramework
The Secure Coding Framework
kube-scan
kube-scan: Octarine k8s cluster risk assessment tool
shisho
Lightweight static analyzer for several programming languages
trivy-action
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities