GeekMasher / ghastoolkitLinks
GitHub Advanced Security Python Toolkit
☆13Updated last week
Alternatives and similar repositories for ghastoolkit
Users that are interested in ghastoolkit are comparing it to the libraries listed below
Sorting:
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆84Updated last year
- Action to detect if a secret is initially detected in a pull request☆17Updated last month
- Examples of Custom Secret Scanning Patterns☆163Updated 5 months ago
- ☆73Updated last month
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 6 months ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆26Updated last year
- GH CLI CodeQL Scan Extension☆20Updated 9 months ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆45Updated 2 weeks ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆36Updated last month
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 3 years ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆119Updated last year
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆148Updated last year
- Put the power of CodeQL in your pocket, take it with you to any CI 🚀☆12Updated last year
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆50Updated 2 weeks ago
- Original workshops and staging area for new ones☆16Updated last month
- GitHub Advance Security Compliance Action☆133Updated 2 years ago
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆14Updated 4 months ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆156Updated 11 months ago
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆156Updated last year
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆59Updated 3 months ago
- A solution which drops GitHub Code Scanning Results from Repositories to Slack Channels.☆18Updated last year
- A React-based component for viewing SARIF files.☆98Updated 8 months ago
- JetBrains IDE plugin for displaying SARIF from GHAS or from a local file☆8Updated this week
- Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning☆22Updated 2 weeks ago
- This repository contains pipeline files for various CI/CD systems, illustrating how to integrate the CodeQL CLI Bundle for Automated Code…☆27Updated 2 years ago
- GitHub Advanced Security Policy as Code☆86Updated last month
- A curated list of awesome CodeQL resources.☆45Updated last month
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated 2 years ago
- Action to detect if a secret is initially detected in a PR commit☆11Updated 2 years ago