SecObserve / secobserve_actions_templatesLinks
GitHub actions and GitLab CI templates run various vulnerability scanners, upload the results into SecObserve and make the results of the scans available for download as artifacts in JSON format.
☆26Updated this week
Alternatives and similar repositories for secobserve_actions_templates
Users that are interested in secobserve_actions_templates are comparing it to the libraries listed below
Sorting:
- Discover vulnerabilities and container image misconfiguration in production environments.☆55Updated 2 weeks ago
- SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It suppor…☆198Updated last week
- Sharing software supply chain security open source projects☆53Updated 3 years ago
- SBOM Move - Automate build and transfer of SBOMs across systems☆25Updated last week
- DefectDojo Community Content☆18Updated last month
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆137Updated 9 months ago
- A utility to (re-)import findings and language data into DefectDojo☆43Updated last year
- A BOM repository server for distributing CycloneDX BOMs☆86Updated 5 months ago
- A flexible framework for security teams to build and deploy AI-powered workflows that complement their existing security operations.☆145Updated last week
- Prevent merging of malicious code in pull requests☆250Updated 9 months ago
- SecHub provides a central API to test software with different security tools.☆350Updated this week
- Software Supply Chain Security Platform☆367Updated this week
- OWASP Foundation Web Respository☆57Updated 2 months ago
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆59Updated this week
- Analyzes software dependencies across GitHub repositories to identify security vulnerabilities and health risks in your supply chain.☆111Updated last week
- CLI component of OWASP PurpleTeam☆133Updated 2 years ago
- Deprecated; please use fcli instead☆27Updated 4 months ago
- OWASP Kubernetes security and compliance tool [WIP]☆108Updated 2 years ago
- Trivy plugin for starting an MCP server☆28Updated 2 weeks ago
- Find which of your direct GitHub dependencies is susceptible to RepoJacking attacks☆61Updated 3 years ago
- An open-source collection of API key rotation tutorials.☆75Updated 3 months ago
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆596Updated 8 months ago
- SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more☆516Updated this week
- GitGoat is an open source tool that was built to enable DevOps and Engineering teams to design and implement a sustainable misconfigurati…☆170Updated 10 months ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆96Updated 10 months ago
- Grype vulnerability check plugin for Visual Studio Code☆24Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- A compilation of resources in the software supply chain security domain, with emphasis on open source☆338Updated 2 years ago
- ☆29Updated last month
- A scanner for end-of-life (EOL) software and dependencies in container images, filesystems, and SBOMs☆424Updated last week