advanced-security / spdx-dependency-submission-actionLinks
upload an SPDX 2.2 formatted SBOM to GitHub's dependency submission API
☆14Updated last week
Alternatives and similar repositories for spdx-dependency-submission-action
Users that are interested in spdx-dependency-submission-action are comparing it to the libraries listed below
Sorting:
- ☆49Updated this week
- Synchronize GitHub Code Scanning alerts to Jira issues☆87Updated 2 months ago
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆46Updated 2 years ago
- Action to detect if a secret is initially detected in a pull request☆17Updated 3 months ago
- An Action for printing OIDC claims in GitHub Actions.☆94Updated 2 months ago
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆54Updated 10 months ago
- Calculates dependencies for a Go build-target and submits the list to the Dependency Submission API☆58Updated this week
- Github Action implementation of SLSA Provenance Generation☆48Updated 2 weeks ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆35Updated 3 weeks ago
- A GitHub action for organizations that enables advanced security code scanning on all new repos☆40Updated last month
- Reusable workflows for developing actions☆68Updated last month
- The service side of clearlydefined.io☆47Updated this week
- Generate SBOMs with gh CLI☆185Updated last week
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆96Updated last year
- GitHub Action for filtering Code Scanning alerts by path and id☆28Updated 7 months ago
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated last year
- Present ZAProxy results in GitHub Advanced Security☆16Updated last year
- A TypeScript library for creating dependency snapshots.☆48Updated this week
- GitHub CLI extension for working with CodeQL☆32Updated 3 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆53Updated this week
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 2 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last week
- Submit SBOMs to GitHub's dependency submission API☆12Updated 2 years ago
- Privileged Requester Action☆17Updated 3 weeks ago
- ☆80Updated last year
- Docker Scout GitHub Action☆117Updated last week
- ☆14Updated last week
- GitHub Action for creating software bill of materials using Syft.☆188Updated 2 weeks ago
- Action for generating SBOM attestations for workflow artifacts☆31Updated this week
- Runs Dependabot Updates via GitHub Actions.☆100Updated this week