microsoft / sarif-js-sdk
JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs/sarif-spec)
☆27Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for sarif-js-sdk
- JavaScript implementation of The Update Framework (TUF)☆73Updated last week
- JS/TS library to easily build valid SARIF output from your javascript based SAST tools☆12Updated this week
- ESLint Plugin focused on common security issues and misconfigurations.☆38Updated this week
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆26Updated this week
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆95Updated 7 months ago
- SARIF Microsoft Visual Studio Code extension☆111Updated last month
- reference implementation of conventionalcommits.org spec☆46Updated 8 months ago
- 🛠️ Get/set persisted configuration using YAML/JSON files in repositories☆35Updated 3 weeks ago
- Probot & GitHub Action example☆35Updated this week
- Lock Action to support deployment locking for the branch-deploy Action☆32Updated 2 weeks ago
- Octokit plugin for GitHub’s recommended request retries☆37Updated this week
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆32Updated 4 months ago
- GitHub Action to combine multiple PRs into a single one☆116Updated this week
- A TypeScript library for creating dependency snapshots.☆46Updated last month
- ✔️ A command-line JSON, YAML and TOML validator that's on your wavelength☆29Updated this week
- Code-signing for npm packages☆156Updated this week
- Publish a signed build provenance from your GitHub Actions workflow☆63Updated 6 months ago
- ☆43Updated 2 months ago
- Find stale repositories in a GitHub organization.☆143Updated this week
- Generate SBOMs with gh CLI☆166Updated 2 months ago
- About GitHub Actions runner images provided by 3rd parties☆64Updated 4 months ago
- An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.☆26Updated this week
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆49Updated 2 years ago
- ☆15Updated 8 months ago
- Proposal for Intl.LocaleMatcher☆35Updated 3 years ago
- CLI to run a octoherd scripts on one or multiple repositories☆103Updated last week
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆46Updated last month
- Hands-on practical use of HTTP security headers as browser security controls to help secure web applications☆18Updated last year
- ☆13Updated last year
- A JS library powered by the 1Password CLI☆95Updated 2 months ago