jpetrucciani / bandit-checkLinks
github action to run the bandit security linter
☆15Updated last month
Alternatives and similar repositories for bandit-check
Users that are interested in bandit-check are comparing it to the libraries listed below
Sorting:
- Dockerfile Security Checker using OPA Rego policies with Conftest☆62Updated 3 years ago
- a tool to audit the istio service mesh☆173Updated 4 years ago
- A tool to check the security settings of Github Organizations.☆75Updated 2 years ago
- ☆27Updated 3 years ago
- Github Action implementation of SLSA Provenance Generation☆50Updated last week
- Unit testing framework for test driven security of AWS, GCP, Heroku and more.☆108Updated last year
- Modular Kubernetes lab which provides an easy and streamlined way to deploy a test cluster with support for different components.☆53Updated 3 months ago
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆132Updated 7 months ago
- An SBOM query language and associated utilities☆55Updated last year
- Static analysis for CloudFormation templates to identify common misconfiguration☆56Updated 3 years ago
- Reapsaw is a continuous security devsecops tool, which helps in enabling security into CI/CD Pipeline. It supports coverage for multiple …☆41Updated 5 years ago
- Security scanning & static analysis tool☆93Updated last year
- javaspringvulny - a Spring Boot web application built wrong on purpose☆23Updated last month
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆48Updated 9 years ago
- Python script for collecting and visualising Google Cloud Platform IAM permissions☆51Updated 8 years ago
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆57Updated last year
- CLI for searching Rego policies☆106Updated 3 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last week
- CloudSplaining on AWS Managed Policies☆44Updated 4 months ago
- An enterprise friendly way of detecting and preventing secrets in code.☆83Updated 3 months ago
- Compare vulnerability scanners results (to make them better!)☆25Updated this week
- Useful scripts, Docker images, docker-compose apps, and Terraform modules.☆150Updated last week
- A small utility that keeps your Git repositories from leaking secrets, skipping hooks, or quietly drifting out of compliance. It’s design…☆32Updated 2 months ago
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆102Updated last month
- OWASP Foundation Web Respository☆57Updated 3 months ago
- A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.☆203Updated 2 years ago
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- Demos for several kubernetes security features☆64Updated last year
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last month
- Like the unix tree command but for GCP Org Heirarchy☆27Updated 4 years ago