Skip to content
View bureado's full-sized avatar

Organizations

@Azure
Block or Report

Block or report bureado

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results
TypeScript 4 2 Updated Jul 26, 2024

Confidential Consortium Framework

C++ 773 208 Updated Jul 26, 2024

Supply Chain Integrity Transparency and Trust ledger application using Confidential Consortium Framework (CCF)

C++ 32 15 Updated Jul 26, 2024

OASIS OSIM TC: Working directory for OSIM TC

4 3 Updated Jun 10, 2024

A standard API specification for exchanging supply chain artifacts and intelligence

35 4 Updated Jul 13, 2024

Potential WG on Artificial Intelligence and Machine Learning (AI/ML)

42 6 Updated Jul 15, 2024

Source code of https://whatsrc.org/

Rust 27 4 Updated Jul 24, 2024

Chainloop is an Open Source evidence store for your Software Supply Chain attestations, SBOMs, VEX, SARIF, CSAF files, QA reports, and more.

Go 337 23 Updated Jul 27, 2024

A universal SBOM representation in protocol buffers

Go 237 36 Updated Jul 15, 2024

A Kubernetes controller and tool for one-way encrypted Secrets

Go 7,394 671 Updated Jul 22, 2024

Security risk analysis for Kubernetes resources

Go 1,188 100 Updated Jun 24, 2024

eBPF-based autoinstrumentation of web applications and network metrics

C 1,279 87 Updated Jul 27, 2024

Open Source Package Analysis

Go 718 51 Updated Jul 1, 2024

The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for open source developers.

JavaScript 687 115 Updated Jul 26, 2024

For engineers and security teams driving fast and secure software supply chains

78 21 Updated Feb 6, 2023

Overlay is a browser extension helping developers evaluate open source packages before picking them

JavaScript 215 17 Updated Feb 21, 2024

🧵 CLI tool for directly patching container images!

Go 857 60 Updated Jul 25, 2024
Go 4 1 Updated Jul 22, 2024

CLI for adding OCI annotations to existing registry artifacts

Go 5 2 Updated Jul 28, 2022

Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.

Go 40 2 Updated Oct 30, 2023

This repo is a consolidation of Secure Software Supply Chain resources, such as talks, whitepapers, conferences and more.

136 17 Updated Jul 12, 2022

⚠️ Replaced by ItalyPaleAle/Revaulter! -- Wrap and unwrap keys using a key vault with admin consent

Go 8 Updated Sep 8, 2023

Open Source Software Secure Supply Chain Framework

234 9 Updated Oct 28, 2022

Collection of tools for analyzing open source packages.

C# 310 47 Updated Jun 27, 2024

Ubuntu ROCKs for the .NET runtime and family

48 4 Updated Jul 15, 2024
Go 248 39 Updated Jul 26, 2024

A repository of strace results for lots of packages.

Shell 2 Updated Jul 22, 2022

Template scanner for security misconfiguration and best practices

C# 124 35 Updated Jun 5, 2024

Microsoft Security DevOps for GitHub Actions.

JavaScript 102 44 Updated Jul 25, 2024
Next