Directories
¶
| Path | Synopsis |
|---|---|
|
api
|
|
|
Package attest writes attestations capturing evaluation results in the format chosen by the caller.
|
Package attest writes attestations capturing evaluation results in the format chosen by the caller. |
|
plugins/osv
Package osv provides CEL helpers for writing policies over OSV results predicates.
|
Package osv provides CEL helpers for writing policies over OSV results predicates. |
|
plugins/semver
Package semver provides a CEL-runtime plugin that exposes a `semver` object with helpers for parsing and comparing Semantic Versioning 2.0.0 strings.
|
Package semver provides a CEL-runtime plugin that exposes a `semver` object with helpers for parsing and comparing Semantic Versioning 2.0.0 strings. |
|
Package publisher emits the results of an AMPEL policy evaluation to external systems.
|
Package publisher emits the results of an AMPEL policy evaluation to external systems. |
|
drivers
Package drivers wires the built-in emitter drivers into the publisher registry.
|
Package drivers wires the built-in emitter drivers into the publisher registry. |
|
stdout
Package stdout implements a mock emitter that writes the evaluation results as JSON to a writer (os.Stdout by default).
|
Package stdout implements a mock emitter that writes the evaluation results as JSON to a writer (os.Stdout by default). |
|
webhook
Package webhook implements an emitter that POSTs the evaluation results as JSON to an HTTP(S) endpoint.
|
Package webhook implements an emitter that POSTs the evaluation results as JSON to an HTTP(S) endpoint. |
|
vex
Package vex is a transformer that reads in a vulnerability report and a number of VEX documents and suppresses those that do not affect the subject
|
Package vex is a transformer that reads in a vulnerability report and a number of VEX documents and suppresses those that do not affect the subject |
|
vulnreport
Package vulnreport implements a transformer that normalizes scanner reports (Trivy, Grype, OSV-Scanner) into the OSV results format, and optionally projects them onto the in-toto vulns/v0.2 predicate.
|
Package vulnreport implements a transformer that normalizes scanner reports (Trivy, Grype, OSV-Scanner) into the OSV results format, and optionally projects them onto the in-toto vulns/v0.2 predicate. |
Click to show internal directories.
Click to hide internal directories.