advanced-security / generate-sbom-actionLinks
An Action to wrap creating an SBOM via REST API
☆19Updated last week
Alternatives and similar repositories for generate-sbom-action
Users that are interested in generate-sbom-action are comparing it to the libraries listed below
Sorting:
- Generate SBOMs with gh CLI☆192Updated 3 months ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆35Updated last week
- A GitHub action to measure GitHub Actions workflow metrics. An enabler to put the concept discussed in the post to practice - https://www…☆22Updated last year
- Load used actions from an entire organization☆17Updated last week
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆75Updated this week
- Host a GitHub Actions Marketplace in your own organization☆28Updated this week
- An OIDC client to retrieve a GitHub API scoped token from within an Actions workflow☆30Updated last year
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆135Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last month
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆33Updated 2 years ago
- ☆46Updated last week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆134Updated 2 weeks ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆91Updated last week
- Github Action implementation of SLSA Provenance Generation☆50Updated this week
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- ☆73Updated last week
- GitHub Advanced Security Policy as Code☆87Updated this week
- ☆81Updated last year
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆51Updated this week
- A GitHub action for organizations that enables advanced security code scanning on all new repos☆41Updated this week
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆56Updated last year
- GitHub Action that will get a scoped short lived token for Actions workflows using a GitHub Application.☆196Updated 5 months ago
- An SBOM query language and associated utilities☆54Updated last year
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆156Updated last year
- Example of using Actions OIDC token to proxy into a private network☆96Updated 5 months ago
- A GitHub action to help you scan your docker image for vulnerabilities☆222Updated 2 years ago
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated 2 years ago
- GitHub Action for creating software bill of materials using Syft.☆200Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆220Updated last week
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆47Updated 2 years ago