ajinabraham / njsscan-action
nodejsscan Github Action
β27Updated last week
Related projects β
Alternatives and complementary repositories for njsscan-action
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns π¬.β229Updated 3 weeks ago
- This repository is deprecated. All of its content and history has been moved to googleapis/google-cloud-node.β22Updated last year
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPECβ33Updated last month
- njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.β375Updated last week
- Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code securiβ¦β73Updated 3 months ago
- GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.β102Updated this week
- Mitigate security concerns of Dependency Confusion supply chain security risksβ40Updated 2 years ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizationsβ21Updated 6 months ago
- OWASP Foundation Web Respositoryβ10Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)β44Updated last year
- GH CLI CodeQL Scan Extensionβ18Updated last month
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS filesβ117Updated this week
- Awesome Snyk community contributions, champions, integrations, blogs, tools and more πβ44Updated 2 years ago
- Fast and passive subdomain enumeration.β14Updated 2 years ago
- A GitHub Action for running the ZAP API scanβ54Updated this week
- GitHub Actions for MobSFβ25Updated 7 months ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.β109Updated 11 months ago
- Scripts for Sourcegraph search results. Useful for static analysis <3β24Updated last year
- Burp plugin for the 1Password session protocol for use by security researchers. https://bugcrowd.com/agilebitsβ55Updated 11 months ago
- Static website for security.txt.β65Updated 4 months ago
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasβ¦β27Updated 5 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.β55Updated 2 months ago
- The Socket CLIβ109Updated this week
- β46Updated last month
- Rules for Bearer SASTβ24Updated last week
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.β36Updated 3 years ago
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and discβ¦β119Updated 5 months ago
- Snyk extension for Visual Studio Codeβ78Updated this week
- Actions and Images for use in Learning Lab courses for CodeQLβ35Updated 2 years ago
- A pattern for reasonably secure Electron applicationsβ73Updated last year