11/12 free views
Tool
Other
Container Security

github-actions

by kubewarden

4stars
9forks
6watchers
Updated about 1 month ago
About

A collection of reusable GitHub Actions and workflows designed to automate Kubewarden policy testing and release processes.

GitHub actions used by the Kubewarden project

Primary Use Case

This tool is used by developers and DevSecOps teams working with Kubewarden policies to automate testing and release workflows within GitHub. It streamlines continuous integration and deployment by providing pre-built GitHub Actions tailored for Kubewarden policy lifecycle management.

Key Features
  • Collection of GitHub Actions specific to Kubewarden
  • Reusable workflows for policy testing
  • Reusable workflows for policy release
  • Versioning support with semver tags and branch management
  • Self-consuming release process to ensure consistency
  • Stable and actively maintained with clear release guidelines

Installation

  • Use the GitHub Actions directly within your GitHub workflows by referencing the repository
  • For versioning, use semver tags (v2 and upwards) or the v1 branch for older versions
  • Update action tags in workflows before tagging a new release to ensure self-consumption
  • Tag releases using semantic versioning (e.g., v2.3.0)

Usage

>_ Use reusable workflows in your GitHub Actions YAML files

Integrate Kubewarden policy testing and release workflows by referencing this repository's actions and workflows

>_ Tag releases with semantic versioning (e.g., v2.3.0)

Create new release tags to manage versions of the GitHub Actions

>_ Update action tags in workflows before tagging a release

Ensure the repository's own workflows consume the new version of the actions

Security Frameworks
Reconnaissance
Resource Development
Execution
Persistence
Defense Evasion
Usage Insights
  • Integrate Kubewarden GitHub Actions into CI/CD pipelines to automate continuous policy testing and enforcement, reducing human error and improving security posture.
  • Leverage reusable workflows to standardize security policy releases across multiple teams, enhancing consistency and compliance.
  • Combine with container scanning tools to create a comprehensive container security automation framework.
  • Use versioning and self-consuming release processes to maintain traceability and auditability of security policy changes.
  • Enable purple teams to simulate policy bypass scenarios by modifying workflows, enhancing detection and response capabilities.

Docs Take 2 Hours. AI Takes 10 Seconds.

Ask anything about github-actions. Installation? Config? Troubleshooting? Get answers trained on real docs and GitHub issues—not generic ChatGPT fluff.

This tool hasn't been indexed yet. Request indexing to enable AI chat.

Admin will review your request within 24 hours

Security Profile
Red Team30%
Blue Team70%
Purple Team60%
Details
LicenseApache License 2.0
Open Issues25
Topics
hacktoberfest
kubernetes-security
policy-as-code
webassembly
kubernetes