jpetrucciani / bandit-checkLinks
github action to run the bandit security linter
☆15Updated last week
Alternatives and similar repositories for bandit-check
Users that are interested in bandit-check are comparing it to the libraries listed below
Sorting:
- a tool to audit the istio service mesh☆174Updated 4 years ago
- Dockerfile Security Checker using OPA Rego policies with Conftest☆62Updated 3 years ago
- Python Faker provider for security related data☆41Updated 5 months ago
- Unit testing framework for test driven security of AWS, GCP, Heroku and more.☆108Updated last week
- Compare vulnerability scanners results (to make them better!)☆27Updated this week
- A tool to check the security settings of Github Organizations.☆75Updated 2 years ago
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆104Updated last week
- ☆27Updated 3 years ago
- Modular Kubernetes lab which provides an easy and streamlined way to deploy a test cluster with support for different components.☆53Updated 3 months ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆60Updated 4 years ago
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆132Updated last week
- An SBOM query language and associated utilities☆55Updated 2 years ago
- Github Action implementation of SLSA Provenance Generation☆50Updated this week
- Demos for several kubernetes security features☆64Updated last year
- CloudSplaining on AWS Managed Policies☆44Updated 4 months ago
- Validate all your Customer IAM Policies against AWS Access Analyzer - Policy Validation☆43Updated 4 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆22Updated 2 years ago
- Security scanning & static analysis tool☆93Updated last year
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- Cloud Security Posture security policies☆32Updated 2 months ago
- Security configuration checks for popular cloud native applications and infrastructure.☆119Updated 3 years ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆58Updated last year
- Static analysis for CloudFormation templates to identify common misconfiguration☆56Updated 3 years ago
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆57Updated last year
- Python script for collecting and visualising Google Cloud Platform IAM permissions☆51Updated 8 years ago
- GKE CIS 1.1.0 Benchmark InSpec Profile☆27Updated 4 years ago
- Pre-commit git hooks for Open Policy Agent (OPA) and Rego development☆68Updated 6 months ago
- Reapsaw is a continuous security devsecops tool, which helps in enabling security into CI/CD Pipeline. It supports coverage for multiple …☆41Updated 5 years ago
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 4 years ago
- Cloudformation Template and Lambda to detect if Instance Profile credentials are being used outside your AWS Account.☆29Updated 6 years ago