crashappsec / chalk
Chalk allows you to follow code from development, through builds and into production.
☆373Updated last week
Alternatives and similar repositories for chalk
Users that are interested in chalk are comparing it to the libraries listed below
Sorting:
- Documenting your Threat Models with HCL☆427Updated last week
- boostsecurityio/poutine☆267Updated this week
- Gram is Klarna's own threat model diagramming tool☆320Updated last week
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆168Updated 2 weeks ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆148Updated 5 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆172Updated 5 months ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆472Updated this week
- Validate the isolation posture of your container environment.☆277Updated this week
- A universal SBOM representation in protocol buffers☆283Updated last week
- A Software as a Service (SaaS) log collection framework.☆168Updated 2 weeks ago
- Awesome secure by default libraries to help you eliminate bug classes!☆690Updated 3 weeks ago
- select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, r…☆420Updated this week
- SBOM Assess - Evaluate SBOM quality and compliance☆208Updated last week
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Generate a score for your sbom to understand if it will actually be useful.☆229Updated 9 months ago
- ☆217Updated 5 months ago
- CI/CD Security Analyzer☆658Updated 2 months ago
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆94Updated this week
- Lambda function that streamlines containment of an AWS account compromise☆345Updated last year
- Software Supply Chain Security Platform☆333Updated this week
- 💀 Don't fear the Reaper 👻☆508Updated last week
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆565Updated last month
- Practical resources for offensive CI/CD security research. Curated the best resources I've seen since 2021.☆515Updated 2 months ago
- ☆367Updated last year
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆747Updated 5 months ago
- ☆63Updated 3 months ago
- A scanner for end-of-life (EOL) software and dependencies in container images, filesystems, and SBOMs☆391Updated last week
- OpenVEX Specification☆150Updated last month
- ☆82Updated this week