dependency-check / Dependency-Check_Action
Github action to run dependency check
☆71Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for Dependency-Check_Action
- Count distinct contributor of Snyk watched repos across several SCM☆30Updated 4 months ago
- OWASP Foundation Web Respository☆79Updated 2 months ago
- Examples of integrating the Snyk CLI into a CI/CD system☆80Updated 7 months ago
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆104Updated 10 months ago
- Compares and analyzes GCP IAM roles.☆76Updated 5 months ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆47Updated last month
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆169Updated 9 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆55Updated 4 months ago
- Discover vulnerabilities and container image misconfiguration in production environments.☆53Updated 2 months ago
- A tool to check the security settings of Github Organizations.☆69Updated last year
- boostsecurityio/poutine☆231Updated this week
- GitHub Advanced Security Policy as Code☆72Updated this week
- 🖇️ STRIDE vs. ASVS equivalence table☆75Updated 2 months ago
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- Generate a score for your sbom to understand if it will actually be useful.☆221Updated 3 months ago
- Protect against subdomain takeover☆92Updated 5 months ago
- A Python client for the Snyk API.☆90Updated 3 months ago
- A utility to (re-)import findings and language data into DefectDojo☆42Updated last month
- Enrich SBOMs with data from third party services☆117Updated 2 weeks ago
- OWASP Foundation Web Respository☆54Updated last year
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆61Updated last year
- SonarQube plugin for identifying hardcoded secrets, such as passwords, API keys, AWS credentials, etc..☆100Updated 11 months ago
- ☆121Updated last year
- Programmatically open new JIRA tickets for all Snyk Issues☆52Updated 3 weeks ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆96Updated 11 months ago
- ☆51Updated 8 months ago
- ☆80Updated this week
- The Amazon Elastic Kubernetes Service (EKS) Creation Engine (ECE) is a Python command-line program created by the Lightspin Office of the…☆40Updated last year