ForAllSecure / mapi-actionLinks
π€ Run a Mayhem for API scan in GitHub Actions
β24Updated last year
Alternatives and similar repositories for mapi-action
Users that are interested in mapi-action are comparing it to the libraries listed below
Sorting:
- This project is deprecated. Use https://github.com/returntocorp/semgrep insteadβ74Updated last year
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and discβ¦β135Updated 2 months ago
- A place to systematically store software bill of materials (SBOM) documents.β50Updated 2 years ago
- A library for building tools to determine if vulnerabilities are reachable in a code base.β17Updated 5 months ago
- Open Source Vulnerability schema.β230Updated this week
- A tool which tries to map CVEs from NVD to packages in supported ecosystems (Maven, NPM, PyPI).β12Updated 6 months ago
- Scan pypi for typosquattingβ38Updated 3 years ago
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and discβ¦β141Updated 2 years ago
- A Sigstore client written in Pythonβ310Updated this week
- SARIF Microsoft Visual Studio Code extensionβ132Updated 2 weeks ago
- Collect, curate, and communicate relevant security metrics for open source projects.β63Updated last year
- β93Updated 3 years ago
- Docker Secure Computing Profile Generatorβ49Updated 4 years ago
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issuesβ192Updated this week
- Mayhem example templates for programming languages and fuzzers that you love!β36Updated 3 months ago
- Examples of SPDX files for software combinationsβ142Updated 2 months ago
- Feed parsing for language package manager updatesβ81Updated last year
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.β84Updated last week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.β122Updated 2 years ago
- β15Updated last week
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos engineeβ¦β226Updated last year
- Tools to create and deploy a database of software packages metadata, origin, dependencies, and license keyed by PURLs (Package URLs). Supβ¦β58Updated last week
- A GitHub Action for pip-auditβ84Updated this week
- β59Updated this week
- A community collection of security reviews of open source software components.β96Updated last year
- Post Processor for Facebook Static Analysis Tools.β141Updated this week
- Report missing advisories and corrections on OSS Indexβ17Updated 3 years ago
- Securing Alice's, Bob's and Carl's software supply chain using in-totoβ104Updated last week
- vulnerabilityhistory.orgβ35Updated last year
- Audit C/C++ projects (make, cmake, command line, etc.)β27Updated 4 years ago