blackduck-inc / intelligent-security-scan
Initiate optimized SAST/SCA scans based on code changes and policy with filtered results converted to SARIF for display in GitHub.
☆1Updated 4 months ago
Alternatives and similar repositories for intelligent-security-scan:
Users that are interested in intelligent-security-scan are comparing it to the libraries listed below
- Splunk Add-On to collect audit log events from Github Enterprise Cloud☆12Updated 2 years ago
- ☆80Updated 11 months ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆85Updated 3 weeks ago
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆13Updated last year
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆96Updated last year
- ☆34Updated 2 weeks ago
- Awesome Snyk community contributions, champions, integrations, blogs, tools and more 💜☆47Updated 3 years ago
- ☆18Updated last year
- GitHub Action that provides an Organization Membership Audit☆42Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated 3 weeks ago
- Checkmarx CxFlow GitHub Action with SARIF output☆53Updated 3 months ago
- ☆70Updated this week
- Website and API for OpenSSF Scorecard☆24Updated last week
- The Auditree tool for adding external evidence.☆10Updated 7 months ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆53Updated 6 months ago
- ☆29Updated this week
- Supply Chain Integrity Model☆104Updated last year
- A Python library and command line interface for CVE Services.☆65Updated last month
- Compare vulnerability scanners results (to make them better!)☆16Updated last month
- The Auditree data gathering and reporting tool.☆13Updated 8 months ago
- Proof of Value Terraform Scripts to utilize Amazon Web Services (AWS) Security, Identity & Compliance Services to Support your AWS Accoun…☆16Updated 4 years ago
- Collect, curate, and communicate relevant security metrics for open source projects.☆63Updated last year
- Sample code snippets for consuming the CloudSploit API☆13Updated last year
- Checkmarx Scan Github Action☆28Updated 9 months ago
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated last year
- ☆10Updated 2 years ago
- Action to detect if a secret is initially detected in a pull request☆16Updated 2 months ago
- Entitlements plugin for a robust audit log☆21Updated last week
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 8 months ago
- This repo demonstrates how to use the GitHub Code Scanning API to export all the alerts in an organization to a CSV file☆18Updated last year