ajinabraham / njsscan-actionLinks
nodejsscan Github Action
☆28Updated last year
Alternatives and similar repositories for njsscan-action
Users that are interested in njsscan-action are comparing it to the libraries listed below
Sorting:
- GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.☆136Updated this week
- Tool to export test reports from the Snyk CLI to HTML.☆101Updated 3 weeks ago
- A broker system between a public service and a private service☆111Updated last week
- Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.☆119Updated this week
- A GitHub Action for running the ZAP Baseline scan☆347Updated last week
- SARIF Microsoft Visual Studio Code extension☆132Updated last week
- Find security vulnerabilities in open source npm packages while you code☆211Updated 3 years ago
- The OWASP Secure Headers Project☆182Updated this week
- This project is deprecated. Use https://github.com/returntocorp/semgrep instead☆74Updated last year
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 2 weeks ago
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆218Updated this week
- ☆57Updated last month
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated last year
- Orchestrate GitHub Actions Security☆304Updated 2 weeks ago
- Reusable workflows for developing actions☆76Updated last month
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆267Updated this week
- Static website for security.txt.☆68Updated 4 months ago
- Official GitHub Action for OpenSSF Scorecard.☆355Updated this week
- ☆12Updated 3 years ago
- A GitHub Action for running the ZAP Full scan☆352Updated last week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆136Updated this week
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆135Updated this week
- Open-source vulnerability disclosure policy templates.☆68Updated 3 years ago
- The Socket CLI☆197Updated last week
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆40Updated 4 years ago
- Checkmarx CxFlow GitHub Action with SARIF output☆55Updated 2 months ago
- Load secrets into GitHub Actions☆47Updated 4 years ago
- An open-source collection of API key rotation tutorials.☆76Updated 4 months ago
- A collection of open-source and commercial tools for creating your APIs with OpenAPI - Sourced from and published for the community☆159Updated this week
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆65Updated 2 weeks ago