Quobis / action-owasp-dependecy-track-checkLinks
Github action to generate BoM and upload to OWASP dependency track for vulnerability analysis
☆50Updated 2 months ago
Alternatives and similar repositories for action-owasp-dependecy-track-check
Users that are interested in action-owasp-dependecy-track-check are comparing it to the libraries listed below
Sorting:
- Publishes BOMs to Dependency-Track from GitHub Actions☆58Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆236Updated last year
- GitHub Advanced Security Policy as Code☆91Updated 3 weeks ago
- Generate SBOMs with gh CLI☆197Updated 7 months ago
- ☆134Updated this week
- An open-source collection of API key rotation tutorials.☆76Updated 4 months ago
- Examples of integrating the Snyk CLI into a CI/CD system☆103Updated last year
- Synchronize GitHub Code Scanning alerts to Jira issues☆95Updated last month
- Enrich SBOMs with data from third party services☆209Updated 3 weeks ago
- Github action to run dependency check☆93Updated 3 weeks ago
- Examples of Custom Secret Scanning Patterns for use with GitHub Secret Protection/Advanced Security☆169Updated 3 weeks ago
- GitHub Action for creating software bill of materials using Syft.☆213Updated 2 weeks ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆223Updated 7 months ago
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated 4 months ago
- A BOM repository server for distributing CycloneDX BOMs☆85Updated 6 months ago
- A tool to create, transform and attest VEX metadata☆170Updated 2 weeks ago
- GitHub action to scan container images with Palo Alto Networks' Prisma Cloud☆58Updated 3 weeks ago
- Utility that provides an API platform for validating, querying and managing BOM data☆124Updated last week
- Software Component Verification Standard (SCVS)☆153Updated 9 months ago
- A standard API specification for exchanging supply chain artifacts and intelligence☆95Updated 3 weeks ago
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆260Updated last week
- SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It suppor…☆200Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last week
- Software Supply Chain Security Platform☆368Updated this week
- OWASP Foundation Web Respository☆57Updated 3 months ago
- The security workflow engine!☆136Updated last month
- SBOM Search - Context aware search in SBOM repositories☆29Updated last month
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- ☆555Updated this week
- boostsecurityio/poutine☆354Updated last month