blackducksoftware / github-action
Synopsys Detect integration with Github Actions
☆17Updated last year
Alternatives and similar repositories for github-action:
Users that are interested in github-action are comparing it to the libraries listed below
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- FedRAMP Tailored.☆43Updated 3 years ago
- OWASP Foundation Web Respository☆10Updated last year
- GitHub Advance Security Compliance Action☆132Updated 2 years ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 10 months ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆35Updated last week
- CVE database☆22Updated 4 years ago
- Action to detect if a secret is initially detected in a pull request☆15Updated last month
- ☆79Updated 9 months ago
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- Examples of SPDX files for software combinations☆127Updated 3 weeks ago
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 2 weeks ago
- Allow Artifactory users to test their applications against the Snyk vulnerability database☆21Updated 2 months ago
- A broker system between a public service and a private service☆105Updated this week
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 3 weeks ago
- SLSA Azure DevOps Pipelines Extension☆26Updated 6 months ago
- This plugin provides dependency metadata for Docker images☆33Updated last week
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆45Updated last year
- This repo demonstrates how to use the GitHub Code Scanning API to export all the alerts in an organization to a CSV file☆18Updated last year
- Publishes BOMs to Dependency-Track from GitHub Actions☆50Updated 4 months ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆80Updated 4 months ago
- SIG Security - Software Bill of Materials☆18Updated 2 years ago
- Play with GHAS API to provide posture data over time☆34Updated last month
- This repository contains pipeline files for various CI/CD systems, illustrating how to integrate the CodeQL CLI Bundle for Automated Code…☆28Updated last year
- Check SPDX SBOM for NTIA minimum elements☆59Updated 2 weeks ago
- ☆70Updated 3 weeks ago
- GitHub Action for adding contextual training material to SARIF files☆22Updated 5 months ago
- OWASP Foundation Web Respository☆27Updated 5 months ago
- ☆30Updated last year
- Technical Advisory Council☆116Updated this week