blackduck-inc / intelligent-security-scan
Initiate optimized SAST/SCA scans based on code changes and policy with filtered results converted to SARIF for display in GitHub.
☆1Updated 3 months ago
Alternatives and similar repositories for intelligent-security-scan:
Users that are interested in intelligent-security-scan are comparing it to the libraries listed below
- Awesome Snyk community contributions, champions, integrations, blogs, tools and more 💜☆47Updated 3 years ago
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆13Updated last year
- GitHub action to download and install Xanitizer, and to run a Xanitizer security analysis in a GitHub workflow.☆10Updated 4 years ago
- Cost-Optimization, Backup & Security Alerting for the AWS Cloud with Terraform templates living in your repository☆17Updated 5 years ago
- ☆18Updated last year
- Website and API for OpenSSF Scorecard☆23Updated this week
- ☆17Updated last month
- OWASP Foundation Web Respository☆10Updated last year
- ☆34Updated 7 months ago
- Github action to benchmark dockerfiles in github repository.☆12Updated 2 years ago
- ☆79Updated 10 months ago
- The Auditree tool for adding external evidence.☆10Updated 6 months ago
- This repository hosts the download links for LGTM Enterprise.☆18Updated 2 years ago
- Splunk Add-On to collect audit log events from Github Enterprise Cloud☆12Updated 2 years ago
- Github Action to Deploy Virtual Machine from vSphere Content Library using GOVC☆8Updated 5 years ago
- GitHub Action for adding contextual training material to SARIF files☆22Updated 6 months ago
- Sample code snippets for consuming the CloudSploit API☆13Updated last year
- ☆27Updated last week
- Proof of Value Terraform Scripts to utilize Amazon Web Services (AWS) Security, Identity & Compliance Services to Support your AWS Accoun…☆16Updated 4 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆18Updated last year
- The Auditree data gathering and reporting tool.☆13Updated 7 months ago
- ☆70Updated last month
- Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts☆23Updated 4 months ago
- Falco workflow & testing infrastructure☆31Updated this week
- This plugin provides dependency metadata for Docker images☆34Updated last week
- Free Docker Vulnerability Scanning for CI/CD integration☆32Updated last year
- Action to detect if a secret is initially detected in a pull request☆15Updated last month
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆56Updated 6 months ago
- go-audit is an alternative to the auditd daemon that ships with many distros☆16Updated 6 years ago