GeekMasher / ghastoolkitLinks
GitHub Advanced Security Python Toolkit
☆14Updated last week
Alternatives and similar repositories for ghastoolkit
Users that are interested in ghastoolkit are comparing it to the libraries listed below
Sorting:
- Action to detect if a secret is initially detected in a pull request☆17Updated last month
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆27Updated last year
- Examples of Custom Secret Scanning Patterns☆166Updated 2 weeks ago
- ☆74Updated last week
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆85Updated last year
- GH CLI CodeQL Scan Extension☆20Updated last month
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 8 months ago
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆15Updated 2 weeks ago
- Original workshops and staging area for new ones☆16Updated 3 months ago
- Put the power of CodeQL in your pocket, take it with you to any CI 🚀☆12Updated 2 years ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆119Updated last year
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆156Updated last year
- Semgrep rules corresponding to the OWASP ASVS standard☆28Updated 4 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 3 months ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆59Updated 6 months ago
- Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning☆23Updated 3 months ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆36Updated 2 weeks ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆54Updated 3 weeks ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 3 years ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆153Updated last year
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- A curated list of awesome CodeQL resources.☆52Updated last month
- A React-based component for viewing SARIF files.☆98Updated 11 months ago
- GitHub Advanced Security Policy as Code☆90Updated 2 weeks ago
- Exports vulnerability scan data from the Checkmarx SAST platform for use in analytical tools.☆19Updated 11 months ago
- Manage a uniform team of security managers for every organization in your enterprise☆25Updated last week
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆157Updated last year
- Action to detect if a secret is initially detected in a PR commit☆11Updated 2 years ago
- Example repository for GitHub Actions Time of Check to Time of Use (TOCTOU vulnerabilities)☆31Updated 5 months ago