blackducksoftware / github-actionLinks
Synopsys Detect integration with Github Actions
☆17Updated 2 years ago
Alternatives and similar repositories for github-action
Users that are interested in github-action are comparing it to the libraries listed below
Sorting:
- Synchronize GitHub Code Scanning alerts to Jira issues☆94Updated last month
- Technical Advisory Council☆133Updated last week
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆192Updated last year
- Examples of SPDX files for software combinations☆139Updated this week
- Software Component Verification Standard (SCVS)☆150Updated 7 months ago
- ☆37Updated 4 months ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆442Updated this week
- A broker system between a public service and a private service☆108Updated this week
- Generate SBOMs with gh CLI☆195Updated 5 months ago
- OpenSSF Security Tooling Working Group☆319Updated 4 months ago
- SPDX Tools☆143Updated last month
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆39Updated 6 months ago
- ☆81Updated last year
- Check SPDX SBOM for NTIA minimum elements☆73Updated last week
- OpenSSF Governance and Legal Docs☆73Updated 2 months ago
- Scanning and analysis for Black Duck SCA products.☆187Updated last week
- OWASP Foundation Web Respository☆28Updated 2 weeks ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆81Updated last year
- OpenSSF Endusers Working Group☆28Updated last year
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆47Updated 2 years ago
- Official GitHub Action for OpenSSF Scorecard.☆341Updated this week
- Checkmarx CxFlow GitHub Action with SARIF output☆54Updated this week
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆215Updated 5 months ago
- OSPO Landscape☆40Updated 3 weeks ago
- TODO Group Governance☆96Updated this week
- Action to detect if a secret is initially detected in a pull request☆18Updated 2 weeks ago
- A BOM repository server for distributing CycloneDX BOMs☆84Updated 4 months ago
- SLSA Proposals☆10Updated last year
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆345Updated last week
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆65Updated last year