arnica-ext / GitGoat
GitGoat is an open source tool that was built to enable DevOps and Engineering teams to design and implement a sustainable misconfiguration prevention strategy. It can be used to test products with access to GitHub repositories without a risk to your production environment.
☆169Updated 2 months ago
Alternatives and similar repositories for GitGoat:
Users that are interested in GitGoat are comparing it to the libraries listed below
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- ☆114Updated this week
- boostsecurityio/poutine☆259Updated 3 weeks ago
- Open source compliance tool for development platforms.☆286Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆83Updated 2 weeks ago
- Compares and analyzes GCP IAM roles.☆77Updated 2 weeks ago
- A cloud security tool to search and clean up unused AWS access keys, written in Go.☆50Updated 2 years ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- OWASP Foundation Web Respository☆82Updated 2 months ago
- Inspect certificate authorities in container images☆230Updated this week
- ☆112Updated 2 months ago
- Generate SBOMs with gh CLI☆178Updated 6 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆170Updated 4 months ago
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆85Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆178Updated this week
- A tool for preventing the installation of malicious PyPI and npm packages☆129Updated this week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆127Updated 2 weeks ago
- Useful scripts, Docker images, docker-compose apps, and Terraform modules.☆142Updated last week
- Is your AWS perimeter secure? Use Powerpipe and Steampipe to check your AWS accounts for public resources, resources shared with untrust…☆111Updated 5 months ago
- ☆93Updated last month
- Open-source best practices for protecting a secure, sensible cloud platform☆124Updated 4 months ago
- Enrich SBOMs with data from third party services☆161Updated last month
- A full insecure kubernetes application for testing security tools☆70Updated last week
- BadRobot - Operator Security Audit Tool☆218Updated last week
- Open Source Software Secure Supply Chain Framework☆235Updated 2 years ago
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated 8 months ago
- ☆282Updated 2 years ago
- Throw a tag at it and it comes back with a checksum.☆116Updated last week
- The Amazon Elastic Kubernetes Service (EKS) Creation Engine (ECE) is a Python command-line program created by the Lightspin Office of the…☆40Updated 2 years ago
- An AWS IAM policy statement parser and query tool.☆174Updated last year