Skip to content
View jkjell's full-sized avatar

Organizations

@in-toto @controlplaneio @ossf @SBOMit

Block or report jkjell

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
28 stars written in Go
Clear filter

Production-Grade Container Scheduling and Management

Go 119,442 42,031 Updated Dec 24, 2025

The Moby Project - a collaborative project for the container ecosystem to assemble container-based systems

Go 71,269 18,872 Updated Dec 23, 2025

An open source trusted cloud native registry project that stores, signs, and scans content.

Go 27,200 5,046 Updated Dec 22, 2025

Code signing and transparency for containers and binaries

Go 5,519 676 Updated Dec 22, 2025

Golang library for managing configuration data from environment variables

Go 5,372 392 Updated Jun 28, 2025

OpenSSF Scorecard - Security health metrics for Open Source

Go 5,202 594 Updated Dec 22, 2025

OCI Image Format

Go 4,068 790 Updated Oct 16, 2025

GUAC aggregates software security metadata into a high fidelity graph database.

Go 1,430 191 Updated Dec 17, 2025

VMware Tanzu Community Edition is no longer an actively maintained project. Code is available for historical purposes only.

Go 1,328 303 Updated Jun 16, 2023

Reference implementation of OpenPubkey

Go 873 68 Updated Dec 9, 2025

Graphing SBOM's Fast.

Go 731 27 Updated Aug 29, 2025

Kratix is an open-source framework for building platforms

Go 703 45 Updated Dec 24, 2025

Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact provenance.

Go 511 74 Updated Dec 22, 2025

Cartographer is a Supply Chain Choreographer.

Go 449 64 Updated Sep 5, 2024

A universal SBOM representation in protocol buffers

Go 313 53 Updated Dec 24, 2025

Artifact Ratification Framework (CNCF Sandbox)

Go 281 77 Updated Dec 22, 2025

Format agnostic SBOM tooling

Go 125 19 Updated Nov 20, 2025

Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko generative SBOM, cosign attestation, and SLSA build provenance

Go 104 11 Updated Apr 23, 2024

Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for software artifacts.

Go 103 32 Updated Dec 22, 2025

RabbitMQ eventing components. Knative Source and Broker.

Go 96 70 Updated Dec 22, 2025

Go implementation of witness

Go 42 32 Updated Dec 22, 2025

Cryptographic and general-purpose routines for Golang Secure Systems Lab projects at NYU

Go 27 27 Updated Dec 9, 2025

Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools

Go 18 5 Updated Dec 15, 2025

Command line interface for Kusari

Go 13 5 Updated Dec 23, 2025

Storage backends for protobom

Go 8 7 Updated Dec 8, 2025

Integrate OPA Gatekeeper's new ExternalData feature with witness to determine whether the images are valid by verifying them against a witness policy

Go 5 2 Updated May 19, 2025
Go 1 Updated Feb 15, 2023