blackducksoftware / github-actionLinks
Synopsys Detect integration with Github Actions
☆17Updated 2 years ago
Alternatives and similar repositories for github-action
Users that are interested in github-action are comparing it to the libraries listed below
Sorting:
- Synchronize GitHub Code Scanning alerts to Jira issues☆96Updated this week
- Checkmarx CxFlow GitHub Action with SARIF output☆55Updated 2 months ago
- Examples of SPDX files for software combinations☆142Updated 2 months ago
- ☆83Updated last year
- ☆37Updated 6 months ago
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆47Updated 2 years ago
- A broker system between a public service and a private service☆111Updated last week
- OWASP Foundation Web Respository☆28Updated last month
- CVE Automation Working Group☆180Updated this week
- Generate SBOMs with gh CLI☆198Updated 8 months ago
- GitHub Advance Security Compliance Action☆134Updated 3 years ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆223Updated 8 months ago
- Scanning and analysis for Black Duck SCA products.☆190Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last month
- SLSA Azure DevOps Pipelines Extension☆29Updated last year
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆42Updated this week
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆195Updated 3 weeks ago
- Checkmarx Scan Github Action☆29Updated last year
- OpenSSF Security Tooling Working Group☆320Updated 7 months ago
- Technical Advisory Council☆134Updated last week
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆66Updated last year
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆79Updated this week
- The FINOS InnerSource SIG is a community of people implementing, or interested in implementing, InnerSource within their financial servic…☆33Updated last year
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆61Updated last year
- Action to detect if a secret is initially detected in a pull request☆19Updated last week
- Software Component Verification Standard (SCVS)☆153Updated 10 months ago
- OWASP Foundation Web Respository☆87Updated 2 months ago
- OpenSSF Governance and Legal Docs☆74Updated 4 months ago
- OSPO Landscape☆41Updated last month
- Open Source Policy Examples and Templates☆192Updated 2 years ago