microsoft / sarif-js-sdkLinks
JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs/sarif-spec)
☆29Updated last year
Alternatives and similar repositories for sarif-js-sdk
Users that are interested in sarif-js-sdk are comparing it to the libraries listed below
Sorting:
- JS/TS library to easily build valid SARIF output from your javascript based SAST tools☆15Updated last week
- reference implementation of conventionalcommits.org spec☆50Updated 4 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆58Updated this week
- JavaScript implementation of The Update Framework (TUF)☆81Updated this week
- ESLint Plugin focused on common security issues and misconfigurations.☆44Updated 7 months ago
- GitHub Action to combine multiple PRs into a single one☆135Updated 6 months ago
- Code-signing for npm packages☆169Updated last week
- ☆52Updated last week
- Collection of security best practices for package managers.☆164Updated 3 years ago
- VS Code extension to view and resolve the security alerts for your GitHub repositories 🔒☆26Updated last year
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆96Updated last year
- Orchestrate GitHub Actions Security☆295Updated last month
- ☆141Updated last week
- Octokit plugin for GitHub’s recommended request throttling☆123Updated this week
- Lock Action to support deployment locking for the branch-deploy Action☆47Updated 3 months ago
- Find stale repositories in a GitHub organization.☆188Updated this week
- Official GitHub Action for OpenSSF Scorecard.☆334Updated last week
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆211Updated this week
- Lint and format markdown code with remark☆61Updated 11 months ago
- Probot & GitHub Action example☆34Updated this week
- SARIF Microsoft Visual Studio Code extension☆121Updated last month
- A plugin for TypeDoc that adds coverage badge generation☆14Updated 5 months ago
- Calculate meta-vulnerabilities from package security advisories☆15Updated 2 weeks ago
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆134Updated 2 weeks ago
- GitHub Action to expose GitHub runtime to the workflow☆80Updated 3 weeks ago
- 🛠️ Get/set persisted configuration using YAML/JSON files in repositories☆41Updated this week
- A GitHub action to create or update a project card☆70Updated 5 months ago
- ESLint plugin that validates data using JSON Schema Validator.☆84Updated last week
- ✔️ A command-line JSON, YAML and TOML validator that's on your wavelength☆36Updated last month
- CLI to run a octoherd scripts on one or multiple repositories☆102Updated this week