SecureStackCo / actions-exposureLinks
A GitHub Action that scans your public web applications after every deployment. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've just deployed is secure and meets your requirements.
☆27Updated 2 years ago
Alternatives and similar repositories for actions-exposure
Users that are interested in actions-exposure are comparing it to the libraries listed below
Sorting:
- A GitHub Action that scans your public web applications for log4j vulnerabilities after every deployment. Add this to your dev, staging a…☆14Updated 3 years ago
- The Secure Coding Framework☆22Updated 5 years ago
- Core model including reused documentation☆101Updated last month
- Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host s…☆31Updated 2 years ago
- ☆138Updated this week
- ☆61Updated 8 months ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆215Updated this week
- The OWASP Vulnerable Web Applications Directory Project (VWAD) is a comprehensive and well maintained registry of all known vulnerable we…☆77Updated this week
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆110Updated 2 years ago
- ☆34Updated 3 years ago
- A fun POC that is built to understand AI security agents.☆34Updated 3 months ago
- VulnCheck's official command line tool☆150Updated 3 weeks ago
- An open-source collection of API key rotation tutorials.☆76Updated 5 months ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆171Updated this week
- MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.☆176Updated last month
- CLI component of OWASP PurpleTeam☆134Updated 2 years ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆83Updated last year
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆64Updated last month
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated 2 years ago
- ☆169Updated 4 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆68Updated 7 months ago
- AI featured threat modeling and security review action☆45Updated last year
- A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, sta…☆25Updated 2 years ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆139Updated 2 years ago
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆163Updated 4 years ago
- Fork Threat Modeling Platform - Community☆27Updated 3 months ago
- Automate Checkmarx Scanning and Onboarding Plus AWS Access☆12Updated 3 years ago
- GHAST (GitHub Actions Static Analysis Tool) is a tool to analyze the security posture of your GitHub Actions and its surrounding environm…☆20Updated 2 years ago
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projects☆34Updated 11 months ago
- OWASP Foundation Web Respository☆16Updated 3 years ago