Skip to main content

Overview

Stacklok’s Minder Cloud is an open source software supply chain security platform that helps developers apply and continuously enforce security policies and best practices across project repositories. Minder Cloud is a fully managed version of the Apache v2.0 licensed open source Minder project.

Collaboration, inclusivity, community and curiosity - these are essential components to a vibrant open source ethos and a core part of Stacklok’s culture. Join us on our Stacklok Discord server if you have any questions, experience any issues or want to follow along with community conversations.

Minder Cloud provides a number of tools to integrate neatly into any workflow:

Minder UI

The Minder UI allows you to easily register your repositories, manage policy and automatically remediate policy violations from your favorite browser. The dashboard provides a holistic view of your overall security posture while recommending corrective actions that can further improve security across your software development lifecycle. The Minder UI is a great choice when you want a highly visual experience that guides you through configuring software supply chain security best practices.

Minder CLI

The Minder CLI is designed to bring the functionality of the Minder Cloud platform into your software delivery workflows. By default, the CLI will communicate with Stacklok’s Minder Cloud platform but for folks that are hosting their own Minder instance it can easily be configured to point to your stack. The Minder CLI is a great choice when you need more control of your Minder Cloud interactions, you want simple scripting against Minder, or you simply have a preference for using the command-line.

Minder REST API

The Minder REST API gives you access to the backend services that power Stacklok’s Minder Cloud platform. These APIs enable you to create integrations and automate workflows that wouldn’t be possible otherwise. The Minder REST APIs are a great choice when you need more control of your Minder Cloud interactions or want to build your custom experiences to suit your organization’s specific needs.