crashappsec / chalk
Chalk allows you to follow code from development, through builds and into production.
☆355Updated this week
Related projects ⓘ
Alternatives and complementary repositories for chalk
- A security layer for Git repositories☆465Updated this week
- CI/CD Security Analyzer☆625Updated last month
- Evaluate source control (GitHub) security posture☆249Updated last year
- Documenting your Threat Models with HCL☆401Updated 2 months ago
- A list of cloud security tools and vendors.☆135Updated 2 months ago
- SBOM quality score - Quality metrics for your sboms☆186Updated this week
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆416Updated this week
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆149Updated 8 months ago
- AWS honey token manager☆84Updated 3 months ago
- Lambda function that streamlines containment of an AWS account compromise☆315Updated 11 months ago
- A universal SBOM representation in protocol buffers☆263Updated this week
- Open-source best practices for protecting a secure, sensible cloud platform☆103Updated 3 weeks ago
- Generate a score for your sbom to understand if it will actually be useful.☆221Updated 3 months ago
- A tool to check the security settings of Github Organizations.☆69Updated last year
- A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalo…☆352Updated last month
- Network egress filtering and runtime security for GitHub-hosted and self-hosted runners☆621Updated this week
- boostsecurityio/poutine☆232Updated this week
- OpenVEX Specification☆131Updated 4 months ago
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆775Updated last week
- Gram is Klarna's own threat model diagramming tool☆282Updated this week
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆169Updated this week
- ☆228Updated this week
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆140Updated this week
- Software Supply Chain Security Platform☆292Updated this week
- A Software as a Service (SaaS) log collection framework.☆131Updated last month
- ☆252Updated last month
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆515Updated last week
- Open source compliance tool for development platforms.☆286Updated last year
- GitGoat is an open source tool that was built to enable DevOps and Engineering teams to design and implement a sustainable misconfigurati…☆167Updated this week
- Repository containing source code of MixewayFlow service that is Swiss army knife for DevSecOps Teams☆35Updated 2 weeks ago