* [cnspec v14.5.0](https://github.com/mondoohq/cnspec) – Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations. * [Chainloop v1.122.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Plumber v0.6.0](https://github.com/getplumber/plumber) – CI/CD compliance scanner for GitLab pipelines