Directories
¶
| Path | Synopsis |
|---|---|
|
cmd
|
|
|
dp
command
|
|
|
internal
|
|
|
analysis
Package analysis implements high-level security analysis over the asset graph.
|
Package analysis implements high-level security analysis over the asset graph. |
|
engine
Package engine — cloud_attack_paths.go
|
Package engine — cloud_attack_paths.go |
|
explain
Package explain provides deterministic and AI-based explanations for CloudAttackPath instances discovered through graph traversal.
|
Package explain provides deterministic and AI-based explanations for CloudAttackPath instances discovered through graph traversal. |
|
graph
Package graph implements an internal Asset Graph engine for DevOps-Proxy.
|
Package graph implements an internal Asset Graph engine for DevOps-Proxy. |
|
graph/traversal
Package traversal provides a reusable graph traversal engine for the DevOps-Proxy asset graph.
|
Package traversal provides a reusable graph traversal engine for the DevOps-Proxy asset graph. |
|
models
Package models — attack_paths.go
|
Package models — attack_paths.go |
|
providers/aws/ec2
Package ec2 provides AWS EC2 helper functions used by the DevOps-Proxy graph engine.
|
Package ec2 provides AWS EC2 helper functions used by the DevOps-Proxy graph engine. |
|
providers/aws/eks
Package eks provides an AWS EKS data collector for Kubernetes governance rules.
|
Package eks provides an AWS EKS data collector for Kubernetes governance rules. |
|
providers/aws/iam
Package iam provides a resolver that analyzes IAM role policies to determine which AWS cloud resources (S3, Secrets Manager, DynamoDB, KMS) a role can access.
|
Package iam provides a resolver that analyzes IAM role policies to determine which AWS cloud resources (S3, Secrets Manager, DynamoDB, KMS) a role can access. |
|
providers/aws/security
Package awssecurity implements the AWS security data collector.
|
Package awssecurity implements the AWS security data collector. |
|
providers/aws/sensitivity
Package sensitivity classifies AWS cloud resources by data sensitivity.
|
Package sensitivity classifies AWS cloud resources by data sensitivity. |
|
render
Package render provides presentation-layer helpers for DevOps-Proxy CLI output.
|
Package render provides presentation-layer helpers for DevOps-Proxy CLI output. |
|
risk
Package risk implements a lightweight attack-path risk prioritization engine.
|
Package risk implements a lightweight attack-path risk prioritization engine. |
|
rulepacks/aws_cost
Package aws_cost provides the rule pack for AWS cost audit.
|
Package aws_cost provides the rule pack for AWS cost audit. |
|
rulepacks/aws_dataprotection
Package aws_dataprotection provides the AWS data-protection rule pack.
|
Package aws_dataprotection provides the AWS data-protection rule pack. |
|
rulepacks/aws_security
Package aws_security provides the AWS security audit rule pack.
|
Package aws_security provides the AWS security audit rule pack. |
|
rulepacks/kubernetes
Package kubernetes provides the Kubernetes governance rule pack.
|
Package kubernetes provides the Kubernetes governance rule pack. |
|
rulepacks/kubernetes_core
Package kubernetes_core provides the cloud-agnostic Kubernetes governance rule pack.
|
Package kubernetes_core provides the cloud-agnostic Kubernetes governance rule pack. |
|
rulepacks/kubernetes_eks
Package kubernetes_eks provides EKS-specific Kubernetes governance rules.
|
Package kubernetes_eks provides EKS-specific Kubernetes governance rules. |
|
rules
EC2_OVERPROVISIONED_PLACEHOLDER has been replaced by EC2_LOW_CPU (ec2_low_cpu.go).
|
EC2_OVERPROVISIONED_PLACEHOLDER has been replaced by EC2_LOW_CPU (ec2_low_cpu.go). |
|
version
Package version holds the build-time version variables for the dp binary.
|
Package version holds the build-time version variables for the dp binary. |
Click to show internal directories.
Click to hide internal directories.