Quobis / action-owasp-dependecy-track-checkLinks
Github action to generate BoM and upload to OWASP dependency track for vulnerability analysis
☆50Updated 2 months ago
Alternatives and similar repositories for action-owasp-dependecy-track-check
Users that are interested in action-owasp-dependecy-track-check are comparing it to the libraries listed below
Sorting:
- GitHub Advanced Security Policy as Code☆94Updated last month
- Publishes BOMs to Dependency-Track from GitHub Actions☆58Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆237Updated last year
- Github action to run dependency check☆92Updated last month
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated last week
- Generate SBOMs with gh CLI☆197Updated 7 months ago
- A BOM repository server for distributing CycloneDX BOMs☆85Updated 6 months ago
- An open-source collection of API key rotation tutorials.☆76Updated 4 months ago
- ☆138Updated this week
- Examples of integrating the Snyk CLI into a CI/CD system☆103Updated last year
- Software Component Verification Standard (SCVS)☆153Updated 9 months ago
- GitHub action to generate a CycloneDX SBOM for .NET☆12Updated 6 months ago
- A tool to check the security settings of Github Organizations.☆75Updated 2 years ago
- Examples of Custom Secret Scanning Patterns for use with GitHub Secret Protection/Advanced Security☆170Updated last month
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆79Updated last week
- GitHub Action for creating software bill of materials using Syft.☆217Updated last week
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 11 months ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆52Updated 2 months ago
- NextJS-based single-page application for completing and reviewing SAMM assessments☆79Updated 2 years ago
- Core model including reused documentation☆101Updated last month
- GitHub action to scan container images with Palo Alto Networks' Prisma Cloud☆58Updated last month
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆264Updated last week
- Synchronize GitHub Code Scanning alerts to Jira issues☆96Updated 2 months ago
- A GitHub Action for running the ZAP Baseline scan☆347Updated last week
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆178Updated last month
- ☆557Updated this week
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- A VS Code Extension for Trivy☆162Updated last week
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆222Updated 8 months ago
- OWASP Kubernetes security and compliance tool [WIP]☆108Updated 2 years ago