github / codeql-coding-standardsLinks
This repository contains CodeQL queries and libraries which support various Coding Standards.
☆179Updated this week
Alternatives and similar repositories for codeql-coding-standards
Users that are interested in codeql-coding-standards are comparing it to the libraries listed below
Sorting:
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆188Updated 2 weeks ago
- SARIF Microsoft Visual Studio Code extension☆125Updated 3 weeks ago
- User-friendly documentation for the SARIF file format.☆333Updated 2 years ago
- The model for the information captured in SPDX version 3 standard.☆97Updated last week
- GitHub Action for filtering Code Scanning alerts by path and id☆36Updated last year
- An extension for Visual Studio Code that adds rich language support for CodeQL☆488Updated last week
- Synchronize GitHub Code Scanning alerts to Jira issues☆95Updated last month
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆350Updated last week
- Official GitHub Action for OpenSSF Scorecard.☆343Updated last week
- ☆76Updated last week
- Get to know more about the concepts of CodeQL by trying our simple tutorials.☆37Updated last year
- Starter workspace to use with the CodeQL extension for Visual Studio Code.☆562Updated last week
- ☆21Updated last week
- Play with GHAS API to provide posture data over time☆40Updated this week
- Open Source Vulnerability schema.☆220Updated this week
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆139Updated 2 years ago
- Examples of SPDX files for software combinations☆140Updated last month
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆122Updated 2 years ago
- OSS-Fuzz vulnerabilities for OSV.☆166Updated this week
- Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.☆110Updated this week
- A React-based component for viewing SARIF files.☆99Updated last year
- Action to detect if a secret is initially detected in a pull request☆18Updated last week
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Updated last year
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆47Updated 2 years ago
- ☆81Updated last year
- Query the GitHub Audit Log for your organization to send it over to other services like elastic, splunk or sentinel for visualization and…☆65Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last week
- Original workshops and staging area for new ones☆16Updated 5 months ago
- Find stale repositories in a GitHub organization.☆191Updated last week
- Audit C/C++ projects (make, cmake, command line, etc.)☆27Updated 4 years ago