SecureStackCo / actions-secrets
Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API keys, .env and config files and more
☆30Updated last year
Alternatives and similar repositories for actions-secrets:
Users that are interested in actions-secrets are comparing it to the libraries listed below
- A GitHub Action that scans your public web applications after every deployment. Add this to your dev, staging and prod steps and SecureS…☆24Updated last year
- A GitHub Action that scans your public web applications for log4j vulnerabilities after every deployment. Add this to your dev, staging a…☆15Updated 3 years ago
- A GitHub Action for using SecureStack to analyse a repository codebase for vulnerabilities in library dependencies (software composition …☆22Updated 3 years ago
- SecureStack Application Bill of Materials (ABOM/SBOM)☆13Updated 2 years ago
- All of our GitHub Actions rolled into one. Or as we like to say: One GitHub Action to rule them all!☆21Updated last year
- A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, sta…☆24Updated last year
- A formula to calculate bounty amounts.☆14Updated 7 years ago
- Compilation of JavaScript XSS oneliners payloads that rocks your nuts!☆25Updated 7 years ago
- ☆21Updated 7 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- Extract domains/subdomains/FQDNs from files and URLs☆20Updated 4 years ago
- Funny Fuzzing Wordlist☆12Updated 2 years ago
- CircleCI log and security configuration automations☆22Updated 4 years ago
- A companion repo to accompany detailed guides and YouTube content to allow users to follow along☆13Updated 4 years ago
- Tool to find stored robots.txt files from the past☆17Updated last year
- ☆9Updated 3 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆37Updated 3 years ago
- Attempt zone transfers on domains☆17Updated 3 years ago
- A Chrome extension that spices up those #togetherwehitharder tweets.☆9Updated 7 years ago
- Automate bug bounty recon using bash alias☆14Updated 8 months ago
- Reconness Agents Script☆32Updated 2 years ago
- A script written in python3 to spread blind cross-site scripting payloads on HTTP requests headers☆12Updated 2 years ago
- MyOpenVDP is a free web application to install a vulnerability disclosure policy or a vulnerability disclosure program on your assets. (V…☆28Updated 8 months ago
- PoC: Python package static and dynamic analysis to detect environment variable stealing☆10Updated 4 years ago
- Wordlists for Bug Bounty☆25Updated 5 years ago
- This is a collection of ZAProxy Automation Tools and scripts to automate security tests of WEB Applications and WEB Sites☆28Updated last year
- A simple script that generates an Excel friendly CSV file from an Amass JSON file.☆13Updated 2 years ago
- Scripts for Sourcegraph search results. Useful for static analysis <3☆27Updated last year
- WebSocket Connection Smuggler☆45Updated 2 years ago