gorrion-io / production-readiness-checklistLinks
โ23Updated last week
Alternatives and similar repositories for production-readiness-checklist
Users that are interested in production-readiness-checklist are comparing it to the libraries listed below
Sorting:
- ๐๏ธ STRIDE vs. ASVS equivalence tableโ76Updated 10 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.โ173Updated 7 months ago
- A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity programโ40Updated last week
- A tool to check the security settings of Github Organizations.โ71Updated 2 years ago
- ๐งช Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.โ39Updated 7 months ago
- โ66Updated 2 years ago
- Gram is Klarna's own threat model diagramming toolโ322Updated this week
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.โ108Updated last year
- AI featured threat modeling and security review actionโ44Updated 8 months ago
- GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environmentโ477Updated 3 weeks ago
- โ35Updated 4 years ago
- OWASP Foundation Web Respositoryโ97Updated 5 months ago
- Demonstrates how a malicious dependency could negatively impact the build output.โ24Updated last year
- boostsecurityio/poutineโ306Updated 2 weeks ago
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Secโฆโ294Updated last year
- โ110Updated last year
- Awesome secure by default libraries to help you eliminate bug classes!โ698Updated 2 months ago
- Segment's Threat Modeling training for our engineersโ244Updated 4 years ago
- Scans your Github Actions for security issuesโ77Updated last week
- โ116Updated this week
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflowsโ110Updated last week
- NextJS-based single-page application for completing and reviewing SAMM assessmentsโ76Updated 2 years ago
- Runtime Security Solution for your CI/CD Pipelineโ106Updated last month
- The security workflow engine!โ118Updated this week
- Too many secrets (2MS) helps people protect their secrets on any file or on systems like CMS, chats and gitโ94Updated last week
- โ76Updated 5 months ago
- โ123Updated last year
- Focused malicious code detection ruleset, with a high protection-to-noise ratioโ122Updated 4 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accountsโ61Updated 2 years ago
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD โฆโ160Updated last week