oss-review-toolkit / ort-ci-github-action
Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs
☆30Updated 2 months ago
Alternatives and similar repositories for ort-ci-github-action
Users that are interested in ort-ci-github-action are comparing it to the libraries listed below
Sorting:
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆34Updated 3 months ago
- Generates SPDX bill-of-material files from a package input and license scan☆13Updated last year
- GitHub Action for creating software bill of materials using Syft.☆185Updated 2 weeks ago
- GitHub Actions to run Probot settings and set defaults☆19Updated 2 years ago
- Find stale repositories in a GitHub organization.☆180Updated last week
- OSPO Landscape☆37Updated 3 weeks ago
- Generate SBOMs with gh CLI☆183Updated 3 weeks ago
- GitHub Advanced Security Policy as Code☆82Updated 3 weeks ago
- GitHub app for SBOM creation using cdxgen and upload to Dependency-Track☆18Updated last week
- Official GitHub Action for OpenSSF Scorecard.☆306Updated this week
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆133Updated last year
- An OIDC client to retrieve a GitHub API scoped token from within an Actions workflow☆29Updated last year
- ☆33Updated 3 weeks ago
- Plugin for supporting SPDX in a Maven build.☆56Updated 2 weeks ago
- Enrich SBOMs with data from third party services☆172Updated last month
- GitHub Action to get a license overview in SPDX format☆14Updated 3 years ago
- GitHub Action to support parsing of the data generated in Issue body for GitHub Issues created using Issue Form Templates.☆30Updated 9 months ago
- Submit SBOMs to GitHub's dependency submission API☆12Updated 2 years ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆54Updated this week
- 🛠️ Get/set persisted configuration using YAML/JSON files in repositories☆39Updated 2 weeks ago
- ☆80Updated last year
- This document outlines the processes we use to manage our FOSS Contributor Fund initiative at Indeed.☆72Updated 2 years ago
- Example of using Actions OIDC token to proxy into a private network☆93Updated last month
- GitHub Action for submitting Maven dependencies☆50Updated this week
- ☆42Updated 6 months ago
- Awesome InnerSource Content☆33Updated 11 months ago
- SBOM Edit - Conditional edits and merging of SBOMs☆69Updated this week
- A java api and command line tool for scanning, reporting and fixing a git repository's InnerSource Readiness based on a supplied specific…☆20Updated last year
- A Github Action to ensure that actions are pinned to full length commit SHAs☆46Updated last week
- Generate docs for GitHub actions☆93Updated last week