blackducksoftware / github-actionLinks
Synopsys Detect integration with Github Actions
☆17Updated 2 years ago
Alternatives and similar repositories for github-action
Users that are interested in github-action are comparing it to the libraries listed below
Sorting:
- SLSA Azure DevOps Pipelines Extension☆30Updated 11 months ago
- FedRAMP Tailored.☆47Updated 3 years ago
- SLSA Proposals☆10Updated last year
- Website and API for OpenSSF Scorecard☆24Updated this week
- Source for official CVE Program policy documents.☆16Updated 2 months ago
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- OWASP Foundation Web Respository☆10Updated 2 years ago
- CVE Automation Working Group☆172Updated this week
- OpenSSF Endusers Working Group☆28Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆45Updated last month
- SLSA implementation of Community Specification governance☆21Updated 2 months ago
- Software Component Verification Standard (SCVS)☆148Updated 3 months ago
- Action to detect if a secret is initially detected in a pull request☆17Updated 3 weeks ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆89Updated 3 weeks ago
- Scanning and analysis for Black Duck SCA products.☆178Updated this week
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆62Updated last year
- The service side of clearlydefined.io☆47Updated this week
- A community collection of security reviews of open source software components.☆95Updated last year
- A broker system between a public service and a private service☆110Updated last week
- Technical Advisory Council☆127Updated 2 weeks ago
- Examples of SPDX files for software combinations☆133Updated 3 weeks ago
- ☆72Updated last month
- A Java library for calculating CVSSv2 and CVSSv3 scores and vectors☆46Updated 7 months ago
- OWASP Foundation Web Respository☆77Updated last month
- Collect, curate, and communicate relevant security metrics for open source projects.☆63Updated last year
- Generate SBOMs with gh CLI☆189Updated last month
- Prevent leaks with gitleaks, and use tests to validate☆32Updated last month
- SPDX Command Line Tools using the Spdx-Java-Library☆77Updated last month
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆185Updated last year
- A proof-of-concept SLSA provenance generator for Jenkins☆24Updated 11 months ago