microsoft / sarif-js-sdkLinks
JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs/sarif-spec)
☆31Updated last year
Alternatives and similar repositories for sarif-js-sdk
Users that are interested in sarif-js-sdk are comparing it to the libraries listed below
Sorting:
- reference implementation of conventionalcommits.org spec☆53Updated 8 months ago
- JS/TS library to easily build valid SARIF output from your javascript based SAST tools☆18Updated last week
- Code-signing for npm packages☆178Updated last week
- JavaScript implementation of The Update Framework (TUF)☆82Updated last week
- GitHub Action to combine multiple PRs into a single one☆141Updated 10 months ago
- Collection of security best practices for package managers.☆164Updated 3 years ago
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆99Updated 2 months ago
- ☆56Updated 2 months ago
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆135Updated last week
- ESLint Plugin focused on common security issues and misconfigurations.☆52Updated 11 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆65Updated 3 weeks ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆42Updated last week
- Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.☆119Updated last week
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆190Updated 2 weeks ago
- 🛠️ Get/set persisted configuration using YAML/JSON files in repositories☆41Updated last week
- Octokit plugin for GitHub’s recommended request throttling☆125Updated last week
- CLI to run a octoherd scripts on one or multiple repositories☆103Updated last week
- ☆141Updated 3 weeks ago
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆28Updated last week
- SARIF Microsoft Visual Studio Code extension☆132Updated last week
- ☆49Updated 4 months ago
- Action for generating SBOM attestations for workflow artifacts☆42Updated last week
- Official GitHub Action for OpenSSF Scorecard.☆355Updated last week
- Orchestrate GitHub Actions Security☆304Updated 2 weeks ago
- Probot & GitHub Action example☆34Updated this week
- ☆76Updated 2 years ago
- Find stale repositories in a GitHub organization.☆192Updated last week
- Plugin-based GitHub bot for ESLint☆68Updated this week
- An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.☆67Updated this week
- ☆144Updated 3 weeks ago