The purpose
Shows how delivery, admission policy, signed artifacts, observability and rollback connect in one operable chain.
What the project exposes
CI, CodeQL, OpenTofu tests, IaC scans, hardened images, SBOMs, Cosign signatures, provenance and local kind-cluster verification.
How to verify it
Documented local path with task local:up followed by task local:verify.
Repository documentation and instructions ↗Provenance
The public murillo-consulting repository is the source for this presentation. Its history, license and files are the reference for understanding the exact provenance of contributions and dependencies.
github.com/murillo-consulting/kube-aegis-forgeLimits to understand
The AWS extension is validated offline. No real AWS deployment is claimed.
This demonstrator is neither a production validation for your system nor evidence of a client engagement. Adoption requires a review appropriate to your environment.