Projects with this topic
-
Contains files used in our Nix-based infrastructure. Access the documentation here: https://docs.garudalinux.net
Updated -
Mirror for devguard-ci-components
DevGuard simplifies vulnerability management for developers by integrating key security practices directly into the CI/CD workflow. With DevGuard, you can seamlessly perform tasks such as Software Composition Analysis (SCA) and Container Scanning, ensuring that vulnerabilities are detected and addressed early in your pipeline.
Updated -
Veracode Container/IaC/Secrets Scanning Component This Veracode Container/IaC/Secrets Scanning Component runs the Veracode-CLI on any GitLab pipeline
About The Container/IaC/Secrets Scanning Component is designed to be used in a CI/CD pipeline to scan a local folder, remote repository, image or archive for 3rd party library vulnerabilities, infrastructure as code misconfigurations and stored secrets.
For more information on Pipeline Scan visit Veracode Help Center Page: https://docs.veracode.com/r/Veracode_Container_Security
Updated -
-
Helm Charts for Crossplane
Updated -
-
Reusable Terraform for a HashiCorp Boundary multi-hop SSH lab on GCP — an internet-facing self-managed worker that proxies SSH to an internal-only target.
Updated -
Containerimage for opentofu
Updated -
JarylC's Personal GitLab Infrastructure-as-Code
Updated -
-
Updated
-
Echo is a computer vision app for brain tumor detection and classification on MRI scans: end-to-end computer vision pipeline, interactive web interface, and production-grade infrastructure.
Updated -
Minimal multiarch tfenv & tfenv Alpine image, updated by Gitlab CI/CD scheduling.
Updated -
-
-
-
-
-
-
A fully automated 13-stage DevSecOps CI/CD pipeline that integrates security, compliance, and cloud-native deployment using GitLab CI and Amazon EKS.
The pipeline demonstrates real-world DevSecOps practices including:
• SAST, dependency, container, IaC, and Kubernetes manifest scanning • SBOM generation (CycloneDX) • Automated POA&M creation mapped to NIST controls • Evidence packaging for compliance audits • Secure image push to Amazon ECR • Deployment and validation on Amazon EKS • Full run-to-completion behavior (lab mode) with findings documented rather than blocking
This project showcases an end-to-end secure software supply chain workflow suitable for: cloud engineering, DevOps, cybersecurity, and compliance automation demonstrations.
Updated