PipeGuard — an open‑source, fast CLI tool
Source: Dev.to
What PipeGuard does
- Detects common security misconfigurations in CI/CD pipelines
- Scans Dockerfiles & Jenkinsfiles for best‑practice issues
- Deterministic, fast scanning with zero runtime dependencies
- Outputs results in JSON & SARIF for easy integration with tools
Built with Go — easy to extend with custom rules.
Contributing
Looking for contributors! If you’d like to help, here are a few areas to start:
- Writing new rules
- Improving existing parsers
- Enhancing documentation & examples
- Adding integrations (GitHub Actions, GitLab CI, etc.)
Repository
https://github.com/tazi06/pipeguard