User-friendly documentation for the SARIF file format.
☆343Dec 15, 2023Updated 2 years ago
Alternatives and similar repositories for sarif-tutorials
Users that are interested in sarif-tutorials are comparing it to the libraries listed below
Sorting:
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆195Updated this week
- SARIF Microsoft Visual Studio Code extension☆132Feb 14, 2026Updated last month
- A report formatter for Bandit (a Python security analyzer) that produces output in the SARIF format.☆20Sep 19, 2023Updated 2 years ago
- Python classes for the SARIF object model☆45Apr 3, 2024Updated last year
- Kotlin data bindings for the Static Analysis Results Interchange Format (SARIF)☆24Mar 6, 2026Updated 2 weeks ago
- GitHub Action for filtering Code Scanning alerts by path and id☆37Mar 11, 2026Updated last week
- GitHub Advanced Security Python Toolkit☆14Updated this week
- Static Analysis Results Interchange Format (SARIF) For OCaml☆14Mar 13, 2025Updated last year
- A React-based component for viewing SARIF files.☆104Nov 12, 2024Updated last year
- Action to detect if a secret is initially detected in a PR commit☆11Jun 19, 2023Updated 2 years ago
- This repository hosts the download links for LGTM Enterprise.☆19Apr 8, 2022Updated 3 years ago
- ☆30Updated this week
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆15Feb 12, 2026Updated last month
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆15Jul 24, 2025Updated 7 months ago
- Tool for algorithmic complexity analysis based on symbolic execution☆10Sep 17, 2018Updated 7 years ago
- OWASP Benchmark Project Utilities - Provides scorecard generation and crawling tools for Benchmark style test suites.☆20Updated this week
- ☆76Feb 27, 2026Updated 3 weeks ago
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Feb 1, 2025Updated last year
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Jun 17, 2024Updated last year
- code reviews to practice☆18Jul 22, 2021Updated 4 years ago
- CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security☆9,357Updated this week
- The official repo of Doop, the declarative pointer analysis framework.☆204Mar 3, 2026Updated 2 weeks ago
- vexctl is a tool to attest VEX impact statements☆45Mar 27, 2023Updated 2 years ago
- Things that would cause a git leaks scan to freak out☆20Mar 3, 2026Updated 2 weeks ago
- COVA - A static analysis tool to compute path conditions☆40Mar 2, 2026Updated 2 weeks ago
- Fuzzers implemented with libafl to evaluate several techniques on fuzzbench☆13Oct 10, 2024Updated last year
- Go beyond package manager discovery for SBOM☆18Feb 22, 2022Updated 4 years ago
- This bootcamp is designed to familiarize you with GitHub Advanced Security (GHAS) so that you can better understand how to use it in your…☆67Jul 22, 2024Updated last year
- Enable Falco to read audit logs from EKS☆11Dec 13, 2020Updated 5 years ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆99Feb 21, 2026Updated last month
- An Action to wrap creating an SBOM via REST API☆20Dec 12, 2025Updated 3 months ago
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆1,099Updated this week
- ☆32May 1, 2025Updated 10 months ago
- Code Property Graph: specification, query language, and utilities☆566Updated this week
- A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use☆14Aug 30, 2018Updated 7 years ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆14,504Updated this week
- A GitHub Action that helps remove GHAS Licences☆12Jul 15, 2024Updated last year
- A small utility that keeps your Git repositories from leaking secrets, skipping hooks, or quietly drifting out of compliance. It’s design…☆34Mar 5, 2026Updated 2 weeks ago
- DevSkim is a set of IDE plugins, language analyzers, and rules that provide security "linting" capabilities.☆976Mar 13, 2026Updated last week