Seccomp profile hardening score engine
Project description
seccompute
Seccomp profile hardening score engine. Scores OCI seccomp profiles 0-100 where 100 = maximally hardened.
See seccompute/__init__.py for public API.
Install
pip install seccompute
Or from a specific tag:
pip install git+https://github.com/antitree/seccompute@v2.0.1
Usage
seccompute profile.json
Development
pip install -e ".[dev]"
pytest -q
Releasing
Releases are published to PyPI automatically via GitHub Actions when a version tag is pushed.
- Bump the version in
pyproject.toml - Commit and tag:
git tag v<version> git push origin main v<version>
- The
release.ymlworkflow builds and publishes to PyPI using Trusted Publishing (no API token required).
One-time PyPI setup: Configure a Trusted Publisher at https://pypi.org/manage/project/seccompute/settings/publishing/ with owner antitree, repository seccompute, workflow release.yml, environment pypi. Also create a pypi environment in the GitHub repo settings.
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file seccompute-2.0.1.tar.gz.
File metadata
- Download URL: seccompute-2.0.1.tar.gz
- Upload date:
- Size: 58.3 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
292c2b1a4ecd390ab78353d740b0c81668e7078104b5f824f2d2eb6f47b0c5d5
|
|
| MD5 |
21ea3cf10a65d51129efa81ccd8b9ccf
|
|
| BLAKE2b-256 |
74657837c4eac7ca08b4a7a93ca7382549d31823bc61a962e93736f0aab72492
|
Provenance
The following attestation bundles were made for seccompute-2.0.1.tar.gz:
Publisher:
release.yml on antitree/seccompute
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
seccompute-2.0.1.tar.gz -
Subject digest:
292c2b1a4ecd390ab78353d740b0c81668e7078104b5f824f2d2eb6f47b0c5d5 - Sigstore transparency entry: 1107153649
- Sigstore integration time:
-
Permalink:
antitree/seccompute@8e289f6569bb0a9501fcf89b04510b736a94d866 -
Branch / Tag:
refs/tags/v2.0.1 - Owner: https://github.com/antitree
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@8e289f6569bb0a9501fcf89b04510b736a94d866 -
Trigger Event:
push
-
Statement type:
File details
Details for the file seccompute-2.0.1-py3-none-any.whl.
File metadata
- Download URL: seccompute-2.0.1-py3-none-any.whl
- Upload date:
- Size: 73.3 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
8d314d639155de1b32a1ea599ce66f937d88db1b23a50d259555c9603cf82218
|
|
| MD5 |
a23c07a87ac838183fd020514b8598d6
|
|
| BLAKE2b-256 |
1386fba1e5750a2dc95cc0ef53202307bf7ab44a845faefe00225a8b1cf3cc1f
|
Provenance
The following attestation bundles were made for seccompute-2.0.1-py3-none-any.whl:
Publisher:
release.yml on antitree/seccompute
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
seccompute-2.0.1-py3-none-any.whl -
Subject digest:
8d314d639155de1b32a1ea599ce66f937d88db1b23a50d259555c9603cf82218 - Sigstore transparency entry: 1107153651
- Sigstore integration time:
-
Permalink:
antitree/seccompute@8e289f6569bb0a9501fcf89b04510b736a94d866 -
Branch / Tag:
refs/tags/v2.0.1 - Owner: https://github.com/antitree
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@8e289f6569bb0a9501fcf89b04510b736a94d866 -
Trigger Event:
push
-
Statement type: