microsoft / sarif-js-sdkLinks
JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs/sarif-spec)
☆28Updated last year
Alternatives and similar repositories for sarif-js-sdk
Users that are interested in sarif-js-sdk are comparing it to the libraries listed below
Sorting:
- JS/TS library to easily build valid SARIF output from your javascript based SAST tools☆13Updated this week
- reference implementation of conventionalcommits.org spec☆50Updated last month
- JavaScript implementation of The Update Framework (TUF)☆80Updated this week
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆27Updated 7 months ago
- ☆49Updated this week
- ESLint Plugin focused on common security issues and misconfigurations.☆43Updated 4 months ago
- JavaScript implementation of the package url spec☆28Updated 3 months ago
- ☆16Updated 4 months ago
- Probot & GitHub Action example☆34Updated this week
- Lock Action to support deployment locking for the branch-deploy Action☆42Updated 3 weeks ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆53Updated this week
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆35Updated last month
- SARIF Microsoft Visual Studio Code extension☆117Updated last week
- GitHub Action to expose GitHub runtime to the workflow☆74Updated last week
- Action for generating SBOM attestations for workflow artifacts☆31Updated this week
- The goal of the Package Metadata Interoperability Collab Space is to improve how JavaScript developers define their packages across the e…☆35Updated 8 months ago
- A TypeScript library for creating dependency snapshots.☆48Updated this week
- Octokit plugin for GitHub’s recommended request retries☆45Updated 3 weeks ago
- ☆46Updated 9 months ago
- 🛠️ Get/set persisted configuration using YAML/JSON files in repositories☆40Updated 3 weeks ago
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆52Updated 3 years ago
- Core functionality of OWASP CycloneDX for JavaScript (Node.js or WebBrowser) written in TypeScript.☆16Updated this week
- ✔️ A command-line JSON, YAML and TOML validator that's on your wavelength☆32Updated last week
- Safely enable 2FA on your CI published packages. Built with ❤️ by The Electron Team☆38Updated 2 weeks ago
- A github action that outputs bundlesize comparison tables for pull requests☆89Updated last week
- GitHub Action for load testing with Artillery.☆16Updated last year
- GitHub Action to combine multiple PRs into a single one☆128Updated 3 months ago
- CLI to run a octoherd scripts on one or multiple repositories☆104Updated last week
- VS Code extension to view and resolve the security alerts for your GitHub repositories 🔒☆26Updated 11 months ago
- Find stale repositories in a GitHub organization.☆183Updated this week