
PipeGuard — an open‑source, fast CLI tool
What PipeGuard does: Detects common security misconfigurations in CI/CD pipelines Scans Dockerfiles & Jenkinsfiles for best practices issues Deterministic, fast scanning with zero runtime dependencies Outputs results in JSON & SARIF for easy integration with tools Built with Go — easy to extend with custom rules. Looking for contributors! If you’d like to help, here are a few areas to start: Writing new rules Improving existing parsers Enhancing documentation & examples Adding integrations (GitHub Actions, GitLab CI, etc.) Repo: https://github.com/tazi06/pipeguard Official site: https://pipeguard.dev/
Continue reading on Dev.to DevOps
Opens in a new tab




