Pinned Repositories
frsca
guac
GUAC aggregates software security metadata into a high fidelity graph database.
attestation
in-toto Attestation Framework
in-toto-golang
A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.
efk-stack
ELK stack Helm Deployment for K8s Logging
spiffe-csi-driver
spiffe-csi-driver example
tekton-golang-pipeline
Tekton Pipeline for Golang with Signed Image and Provenance
tekton-webinar
Tekton Chains Webinar materials
chains
Supply Chain Security in Tekton Pipelines
pipeline
A cloud-native Pipeline resource.
pxp928's Repositories
pxp928/ssf
pxp928/artifact-ff
pxp928/attestation
ITE-6 Attestation Definitions
pxp928/chains
Supply Chain Security in Tekton Pipelines
pxp928/cilium
eBPF-based Networking, Security, and Observability
pxp928/community
Community documentation for the Tekton project
pxp928/cosign
Container Signing
pxp928/friends
Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.
pxp928/go-cloud
The Go Cloud Development Kit (Go CDK): A library and tools for open cloud development in Go.
pxp928/go-spiffe
Golang library for SPIFFE support
pxp928/golang-samples
Sample apps and code written for Google Cloud in the Go programming language.
pxp928/guac-ai-mole
🥑 Inspect and understand an organization's software supply chain that enables stakeholders to make actionable decisions about software supply chain security
pxp928/guac-data
pxp928/guac-docs
pxp928/guac-ingest
Github Action for ingesting SBOMs and Attestations into GUAC
pxp928/guac-landing
GUAC Landing page
pxp928/guac-provider
pxp928/guac-update-db
pxp928/guac-visualizer
pxp928/in-toto-golang
A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.
pxp928/ITE
in-toto Enhancements
pxp928/kusari-helm-charts
Helm Chart for deploying GUAC
pxp928/osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev
pxp928/pipeline
A cloud-native Pipeline resource.
pxp928/preddict
pxp928/regclient
Docker and OCI Registry Client in Go and tooling using those libraries.
pxp928/sbom-scorecard
pxp928/sig-software-supply-chain
SIG Software Supply Chain
pxp928/spector
Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks
pxp928/tetragon
eBPF-based Security Observability and Runtime Enforcement