gborough / roscalLinks
Open Security Controls Assessment Language Toolbox
☆16Updated 3 weeks ago
Alternatives and similar repositories for roscal
Users that are interested in roscal are comparing it to the libraries listed below
Sorting:
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆202Updated this week
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆175Updated 2 months ago
- NIST OSCAL SDK and CLI☆19Updated 2 months ago
- ☆105Updated this week
- Agile authoring tutorial and repo set-up tooling☆19Updated last year
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- Automatically assess and score software repositories for supply chain risk.☆114Updated last week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆100Updated last month
- The Compliance Validator☆183Updated this week
- OSCAL reusable component definitions library☆12Updated 5 months ago
- A standard API specification for exchanging supply chain artifacts and intelligence☆83Updated 2 months ago
- Polar is a secure and scalable knowledge graph framework, designed to address the challenges posed by building big data systems in highly…☆20Updated last week
- ☆101Updated 11 months ago
- Demo setup for compliance-trestle☆35Updated 5 months ago
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆60Updated last year
- Utility that provides an API platform for validating, querying and managing BOM data☆118Updated 2 weeks ago
- OpenVEX Specification☆156Updated 3 months ago
- Automate the creation of a System Security Plan (SSP)☆39Updated 2 months ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆201Updated 4 months ago
- Enrich SBOMs with data from third party services☆190Updated last week
- ☆65Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆101Updated this week
- A tool to create, transform and attest VEX metadata☆153Updated last week
- Machine-readable specification for the attestation of security-relevant data.☆61Updated last month
- Open source tool for processing OSCAL based FedRAMP SSPs☆42Updated 10 months ago
- A universal SBOM representation in protocol buffers☆298Updated last week
- ☆19Updated last year
- sbomasm: The Complete SBOM Management Toolkit☆77Updated last week
- Repository for the generation of OSCAL data types☆24Updated this week
- A BOM repository server for distributing CycloneDX BOMs☆77Updated 2 months ago