blackducksoftware / github-action
Synopsys Detect integration with Github Actions
☆17Updated last year
Alternatives and similar repositories for github-action:
Users that are interested in github-action are comparing it to the libraries listed below
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 9 months ago
- Report missing advisories and corrections on OSS Index☆17Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- Technical Advisory Council☆113Updated this week
- SIG Security - Software Bill of Materials☆18Updated 2 years ago
- OpenSSF Endusers Working Group☆28Updated 9 months ago
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆45Updated last year
- The service side of clearlydefined.io☆46Updated this week
- Prevent leaks with gitleaks, and use tests to validate☆32Updated last month
- Check SPDX SBOM for NTIA minimum elements☆58Updated this week
- ☆7Updated 5 years ago
- OWASP Foundation Web Respository☆27Updated 4 months ago
- NIST OSCAL SDK and CLI☆37Updated 4 years ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆80Updated 3 months ago
- ☆78Updated 8 months ago
- ☆33Updated 4 months ago
- Checkmarx CxFlow GitHub Action with SARIF output☆53Updated this week
- Guideline of best practices to follow to configure Github Enterprise Cloud in a secure way.☆37Updated 4 years ago
- GitHub Action that provides an Organization Membership Audit☆42Updated last year
- FedRAMP Tailored.☆43Updated 2 years ago
- SPDX Command Line Tools using the Spdx-Java-Library☆64Updated 3 weeks ago
- Supply Chain Integrity Model☆104Updated last year
- GitHub Action for adding contextual training material to SARIF files☆21Updated 4 months ago
- The FINOS InnerSource SIG is a community of people implementing, or interested in implementing, InnerSource within their financial servic…☆28Updated 9 months ago
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆178Updated 11 months ago
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆13Updated last year
- GitHub Advanced Security Policy as Code☆76Updated this week
- GitHub administration command line tool☆21Updated last year
- Website and API for OpenSSF Scorecard☆23Updated this week
- Software Component Verification Standard (SCVS)☆138Updated 9 months ago