Skip to content
View dlorenc's full-sized avatar

Highlights

  • Pro

Organizations

@sigstore @multi-factor-auth-users @chainguard-dev @wolfi-dev

Block or report dlorenc

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results
Go 518 51 Updated Jan 28, 2026

A place for the InfoSec community to share and celebrate real stories of organizations successfully using SBOMs (and other bills of material) to actually manage and reduce security risk in meaningf…

43 3 Updated Nov 22, 2023

Resolve production issues, fast. An open source observability platform unifying session replays, logs, metrics, traces and errors powered by ClickHouse and OpenTelemetry.

TypeScript 9,401 381 Updated Mar 27, 2026

Resources to help vulnerability scanners

Go 11 13 Updated Mar 29, 2026

OpenTofu lets you declaratively manage your cloud infrastructure.

Go 28,241 1,196 Updated Mar 27, 2026

Dynamic GitHub Actions from Wolfi packages

44 5 Updated May 15, 2025

The Finch CLI is an open source client for container development

Go 3,996 110 Updated Mar 28, 2026

An http proxy for reproducibility.

Go 19 3 Updated Jan 10, 2023

A universal SBOM representation in protocol buffers

Go 322 55 Updated Mar 26, 2026

A high performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar

Go 4,945 377 Updated Mar 29, 2026

Cloud cost estimates for Terraform in pull requests💰📉 Shift FinOps Left!

Go 12,238 661 Updated Mar 24, 2026

OpenVEX Specification

172 23 Updated Jan 16, 2026

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at massive scale.

Rust 4,608 558 Updated Jan 4, 2026

StackGres Operator, Full Stack PostgreSQL on Kubernetes // !! Mirror repository of https://gitlab.com/ongresinc/stackgres, only accept Merge Requests there.

Java 1,382 71 Updated Mar 24, 2026

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Go 8,608 548 Updated Mar 29, 2026

Public Chainguard Images

HCL 664 173 Updated Mar 28, 2026

Cosign Github Action

194 55 Updated Mar 26, 2026

vexctl is a tool to attest VEX impact statements

Go 45 11 Updated Mar 27, 2023

A utility to generate SPDX-compliant Bill of Materials manifests

Go 449 65 Updated Mar 27, 2026

Main package repository for production Wolfi images

Shell 1,188 428 Updated Mar 18, 2026

Code signing and transparency for containers and binaries

Go 5,770 711 Updated Mar 23, 2026

EarlyBird is a sensitive data detection tool capable of scanning source code repositories for clear text password violations, PII, outdated cryptography methods, key files and more.

Go 759 89 Updated Mar 18, 2026

Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.

Go 76 64 Updated Mar 27, 2026

Code-signing for npm packages

TypeScript 178 43 Updated Mar 27, 2026

Kubernetes tools in a "distroless" container

Shell 13 3 Updated Oct 30, 2023

Docs and Tutorials for Chainguard

SCSS 92 108 Updated Mar 29, 2026

支持远程办公的中国公司

2,866 102 Updated Mar 25, 2026

Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

Go 165 69 Updated Mar 26, 2026

A reading list for software supply-chain security.

365 15 Updated Nov 21, 2022
Next