advanced-security / generate-sbom-actionLinks
An Action to wrap creating an SBOM via REST API
☆18Updated this week
Alternatives and similar repositories for generate-sbom-action
Users that are interested in generate-sbom-action are comparing it to the libraries listed below
Sorting:
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆36Updated last week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated 3 weeks ago
- A GitHub action to measure GitHub Actions workflow metrics. An enabler to put the concept discussed in the post to practice - https://www…☆23Updated last year
- Action to detect if a secret is initially detected in a pull request☆17Updated this week
- ☆42Updated 7 months ago
- Generate SBOMs with gh CLI☆187Updated 3 weeks ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆88Updated last week
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆50Updated this week
- GitHub Advanced Security Policy as Code☆83Updated last week
- GitHub Advance Security Compliance Action☆133Updated 2 years ago
- Example of using Actions OIDC token to proxy into a private network☆94Updated 2 months ago
- Host a GitHub Actions Marketplace in your own organization☆28Updated this week
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆32Updated 2 years ago
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆46Updated 2 years ago
- An SBOM query language and associated utilities☆54Updated last year
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 10 months ago
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆68Updated 2 weeks ago
- An OIDC client to retrieve a GitHub API scoped token from within an Actions workflow☆30Updated last year
- Github Action implementation of SLSA Provenance Generation☆48Updated last week
- A collection of dashboards and knowledge objects for Github data☆34Updated last year
- A Terraform module to manage GitHub Teams. https://github.com/☆53Updated last year
- ☆72Updated last week
- ☆80Updated last year
- CLI to report on GitHub Actions☆17Updated 2 weeks ago
- A tool to create, transform and attest VEX metadata☆143Updated this week
- ☆17Updated last year
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆86Updated last week
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated last year
- Load used actions from an entire organization☆17Updated 3 weeks ago
- GitHub Action for creating software bill of materials using Syft.☆189Updated last week