Skip to content
View dlorenc's full-sized avatar

Highlights

  • Pro

Organizations

@sigstore @multi-factor-auth-users @chainguard-dev @wolfi-dev

Block or report dlorenc

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results
Go 529 52 Updated Jan 28, 2026

A place for the InfoSec community to share and celebrate real stories of organizations successfully using SBOMs (and other bills of material) to actually manage and reduce security risk in meaningf…

43 3 Updated Nov 22, 2023

Resolve production issues, fast. An open source observability platform unifying session replays, logs, metrics, traces and errors powered by ClickHouse and OpenTelemetry.

TypeScript 9,432 389 Updated Apr 13, 2026

Resources to help vulnerability scanners

Go 11 14 Updated Apr 13, 2026

OpenTofu lets you declaratively manage your cloud infrastructure.

Go 28,363 1,209 Updated Apr 13, 2026

Dynamic GitHub Actions from Wolfi packages

44 6 Updated May 15, 2025

The Finch CLI is an open source client for container development

Go 4,007 112 Updated Apr 13, 2026

An http proxy for reproducibility.

Go 19 3 Updated Jan 10, 2023

A universal SBOM representation in protocol buffers

Go 321 56 Updated Apr 6, 2026

A high performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar

Go 5,012 383 Updated Apr 13, 2026

Cloud cost estimates for Terraform in pull requests💰📉 Shift FinOps Left!

Go 12,264 667 Updated Apr 13, 2026

OpenVEX Specification

172 25 Updated Jan 16, 2026

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at massive scale.

Rust 4,614 558 Updated Jan 4, 2026

StackGres Operator, Full Stack PostgreSQL on Kubernetes // !! Mirror repository of https://gitlab.com/ongresinc/stackgres, only accept Merge Requests there.

Java 1,385 71 Updated Apr 6, 2026

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Go 8,689 560 Updated Apr 13, 2026

Public Chainguard Images

HCL 667 175 Updated Apr 13, 2026

Cosign Github Action

196 57 Updated Apr 13, 2026

vexctl is a tool to attest VEX impact statements

Go 45 11 Updated Mar 27, 2023

A utility to generate SPDX-compliant Bill of Materials manifests

Go 452 65 Updated Apr 13, 2026

Main package repository for production Wolfi images

Shell 1,197 425 Updated Apr 10, 2026

Code signing and transparency for containers and binaries

Go 5,810 717 Updated Apr 13, 2026

EarlyBird is a sensitive data detection tool capable of scanning source code repositories for clear text password violations, PII, outdated cryptography methods, key files and more.

Go 765 92 Updated Apr 13, 2026

Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.

Go 79 64 Updated Apr 10, 2026

Code-signing for npm packages

TypeScript 178 43 Updated Apr 13, 2026

Kubernetes tools in a "distroless" container

Shell 13 3 Updated Oct 30, 2023

Docs and Tutorials for Chainguard

SCSS 92 110 Updated Apr 13, 2026

支持远程办公的中国公司

2,870 101 Updated Mar 25, 2026

Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

Go 166 69 Updated Apr 13, 2026

A reading list for software supply-chain security.

365 15 Updated Nov 21, 2022
Next