Projects with this topic
-
Skaledheim (SKM) is a modular platform designed to orchestrate distributed services inside a cohesive DevSecOps cluster oriented ecosystem.
Updated -
Chapter 5: a container image at cutover phase. The unsigned-image gap is planted, and the red pipeline is the point: watch the floor block it.
Updated -
The landing page and the ten scenarios. The thesis, the claims ledger, and the public posture mirror an assessor can check without an account.
Updated -
Chapter 6: a CI component at enforce phase. The off-catalog include is planted, and the red pipeline is the point: watch the gate stop it.
Updated -
Chapter 3: the driver. One tool provisions the group, assesses each control, pushes verdicts, and exports OSCAL.
Updated -
Chapter 2: the policy plane. The NIST 800-53 framework, the Pipeline Execution Policy that injects the line, and the approval gates.
Updated -
Chapter 1: the governed CI/CD Catalog and the evidence line. Published, pinned components every workload builds from.
Updated -
Chapter 4: a Go binary at report phase. Gaps are published and advisory, so the merge request stays green while the finding rides along.
Updated -
Renders the Evidence Factory group README and its ten scenarios as one site. This project holds no prose; edit gitlab-profile.
Updated -
-
DevSecOps health check for GitLab Self-Managed instances.
Updated -
Toolchain image for the Coroboros security gates.
UpdatedUpdated -
Fix agent reliability issues in GitLab CI/CD across Claude Agent SDK, OpenAI Agents SDK, Google ADK, MCP, LangChain, LangGraph, CrewAI, AutoGen AG2, Pydantic AI, and Vercel AI. Gates pipelines on risk and severity.
Updated -
This GitLab CI/CD pipeline implements a complete DevSecOps and GitOps workflow for a containerized application. It performs Dockerfile linting, builds and pushes images with Kaniko, runs Gitleaks and Trivy security scans, generates a CycloneDX SBOM, updates Kubernetes manifests through GitOps, performs DAST using OWASP ZAP and Nuclei, and generates a unified HTML security report with all scan results.
Updated -
Deep repository intelligence for humans and ai. Air gapped, on premise, zero dependency SAST for 50 languages regardless of compilation status. Sarif and sbom outputs.
Updated -
-
Always-on GitLab repo custodian: an autonomous AI teammate (4 personas) that reviews merge requests, sweeps merged code for regressions, files issues, and drafts fix MRs — tuning itself to your team's standards from your reactions. Built on Vertex AI Gemini + GitLab MCP for the Google Cloud Rapid Agent Hackathon 2026 (GitLab Track).
Updated -
This repository manages the deployment and automated security scanning of OWASP Juice Shop
Updated -
Shared CI/CD components for the Mandrel Project: commit linting, security scanning, tests, semantic versioning, and artifact publishing for Go services, Go modules, and specification bundles.
Updated