Audit software supply chain security against CIS benchmarks
Software supply chain auditing tool based on CIS benchmark
chain-bench
$ chain-bench audit
$ chain-bench audit --repo /path/to/repository
$ chain-bench audit --output json > report.json