dependency-check / Dependency-Check_Action
Github action to run dependency check
☆74Updated 7 months ago
Alternatives and similar repositories for Dependency-Check_Action:
Users that are interested in Dependency-Check_Action are comparing it to the libraries listed below
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated 8 months ago
- OWASP Foundation Web Respository☆81Updated last month
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆107Updated last year
- Examples of integrating the Snyk CLI into a CI/CD system☆85Updated 3 months ago
- OWASP Foundation Web Respository☆55Updated last year
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆171Updated 3 months ago
- GitHub Advanced Security Policy as Code☆79Updated last week
- Discover vulnerabilities and container image misconfiguration in production environments.☆55Updated this week
- Publishes BOMs to Dependency-Track from GitHub Actions☆51Updated 4 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆60Updated last year
- ☆63Updated 2 years ago
- Compares and analyzes GCP IAM roles.☆77Updated 9 months ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- 🖇️ STRIDE vs. ASVS equivalence table☆75Updated 6 months ago
- A utility to (re-)import findings and language data into DefectDojo☆42Updated 5 months ago
- Protect against subdomain takeover☆93Updated 9 months ago
- ☆112Updated last month
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆98Updated last year
- Safer AWS SCP deployments via real-time monitoring☆50Updated last year
- A Python client for the Snyk API.☆93Updated 6 months ago
- ☆47Updated last year
- ⚡️Snyk API powered import tool to help you automate & monitor a large scale import into Snyk organizations. Designed for onboarding with …☆38Updated 2 weeks ago
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆141Updated 11 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 8 months ago
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- Sunshine - SBOM visualization tool☆39Updated last month
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Updated 6 months ago
- GitHub action to scan container images with Palo Alto Networks' Prisma Cloud☆55Updated last month
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago