github / codeql-coding-standardsLinks
This repository contains CodeQL queries and libraries which support various Coding Standards.
☆185Updated this week
Alternatives and similar repositories for codeql-coding-standards
Users that are interested in codeql-coding-standards are comparing it to the libraries listed below
Sorting:
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆192Updated this week
- SARIF Microsoft Visual Studio Code extension☆132Updated 2 weeks ago
- GitHub Action for filtering Code Scanning alerts by path and id☆37Updated last year
- An extension for Visual Studio Code that adds rich language support for CodeQL☆503Updated last week
- Synchronize GitHub Code Scanning alerts to Jira issues☆96Updated 2 months ago
- Official GitHub Action for OpenSSF Scorecard.☆356Updated this week
- Get to know more about the concepts of CodeQL by trying our simple tutorials.☆37Updated last year
- User-friendly documentation for the SARIF file format.☆337Updated 2 years ago
- ☆75Updated this week
- GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.☆138Updated this week
- ☆56Updated 2 months ago
- Find stale repositories in a GitHub organization.☆193Updated this week
- A set of Python command line tools for working with SARIF files produced by code analysis tools☆140Updated 5 months ago
- A TypeScript library for creating dependency snapshots.☆56Updated 2 months ago
- Query the GitHub Audit Log for your organization to send it over to other services like elastic, splunk or sentinel for visualization and…☆67Updated last year
- Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning☆23Updated last month
- Privileged Requester Action☆26Updated 4 months ago
- ☆83Updated last year
- GitHub Advance Security Compliance Action☆134Updated 3 years ago
- Action to detect if a secret is initially detected in a pull request☆19Updated last week
- OSS-Fuzz vulnerabilities for OSV.☆170Updated this week
- This tool allows GHES administrators to sync Actions to their instances☆135Updated last week
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆218Updated this week
- A curated list of awesome CodeQL resources.☆69Updated 2 weeks ago
- A tool for syncing the CodeQL Action from GitHub.com to GitHub Enterprise Server, including copying the CodeQL bundle.☆46Updated 2 months ago
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Updated last year
- Play with GHAS API to provide posture data over time☆40Updated last week
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆353Updated this week
- Automatically open a pull request for repositories that have no CONTRIBUTING.md file☆41Updated 9 months ago
- An action for automatically labelling issues☆230Updated 2 months ago