blackduck-inc / intelligent-security-scan
Initiate optimized SAST/SCA scans based on code changes and policy with filtered results converted to SARIF for display in GitHub.
☆1Updated 2 months ago
Alternatives and similar repositories for intelligent-security-scan:
Users that are interested in intelligent-security-scan are comparing it to the libraries listed below
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆13Updated last year
- Cost-Optimization, Backup & Security Alerting for the AWS Cloud with Terraform templates living in your repository☆17Updated 5 years ago
- ☆17Updated this week
- GitHub action to download and install Xanitizer, and to run a Xanitizer security analysis in a GitHub workflow.☆9Updated 4 years ago
- ☆18Updated 3 years ago
- The Auditree tool for adding external evidence.☆10Updated 5 months ago
- AWS container security survey 2020☆11Updated 4 years ago
- The Auditree data gathering and reporting tool.☆13Updated 5 months ago
- ☆30Updated last year
- ☆28Updated 7 months ago
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆95Updated 9 months ago
- Github Action to Deploy Virtual Machine from vSphere Content Library using GOVC☆8Updated 5 years ago
- ☆33Updated 5 months ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆80Updated 4 months ago
- OWASP Foundation Web Respository☆10Updated last year
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated 9 months ago
- Sample code snippets for consuming the CloudSploit API☆13Updated last year
- ☆79Updated 9 months ago
- Terraform modules for CloudSploit Scanner☆14Updated 2 years ago
- Stores and analyzes log data☆23Updated last month
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 6 months ago
- Actions and Images for use in Learning Lab courses for CodeQL☆35Updated 2 years ago
- ☆70Updated 2 weeks ago
- Action to detect if a secret is initially detected in a pull request☆15Updated last month
- Compare vulnerability scanners results (to make them better!)☆16Updated this week
- Splunk Add-On to collect audit log events from Github Enterprise Cloud☆12Updated 2 years ago
- ☆27Updated this week
- Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts☆22Updated 3 months ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆49Updated 4 months ago
- ZAP Management Scripts☆21Updated this week