blackducksoftware / github-actionLinks
Synopsys Detect integration with Github Actions
☆17Updated 2 years ago
Alternatives and similar repositories for github-action
Users that are interested in github-action are comparing it to the libraries listed below
Sorting:
- Synchronize GitHub Code Scanning alerts to Jira issues☆96Updated 2 months ago
- Checkmarx CxFlow GitHub Action with SARIF output☆55Updated 2 months ago
- Examples of SPDX files for software combinations☆141Updated 2 months ago
- ☆37Updated 6 months ago
- ☆83Updated last year
- Scanning and analysis for Black Duck SCA products.☆190Updated this week
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆47Updated 2 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 3 weeks ago
- GitHub Advance Security Compliance Action☆134Updated 3 years ago
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆195Updated 2 weeks ago
- OWASP Foundation Web Respository☆28Updated last month
- OpenSSF Governance and Legal Docs☆74Updated 4 months ago
- SPDX Tools☆143Updated 3 months ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆80Updated last year
- A service that crawls projects and packages for information relevant to ClearlyDefined☆56Updated last week
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆42Updated last week
- Generate SBOMs with gh CLI☆197Updated 8 months ago
- A broker system between a public service and a private service☆111Updated last week
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆61Updated last year
- OpenSSF Security Tooling Working Group☆320Updated 6 months ago
- Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.☆111Updated 2 weeks ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆467Updated last week
- Software Component Verification Standard (SCVS)☆153Updated 9 months ago
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Updated last year
- Checkmarx Scan Github Action☆29Updated last year
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆99Updated 2 months ago
- OpenSSF Endusers Working Group☆28Updated last year
- Technical Advisory Council☆133Updated last week
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆83Updated last year
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆78Updated this week