oss-review-toolkit / ort-ci-github-action
Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs
☆28Updated this week
Alternatives and similar repositories for ort-ci-github-action:
Users that are interested in ort-ci-github-action are comparing it to the libraries listed below
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆32Updated 3 weeks ago
- Generates SPDX bill-of-material files from a package input and license scan☆12Updated 10 months ago
- Official GitHub Action for OpenSSF Scorecard.☆278Updated this week
- Team performance insights for your organization.☆72Updated 7 months ago
- Submit SBOMs to GitHub's dependency submission API☆12Updated last year
- Enrich SBOMs with data from third party services☆156Updated this week
- ☆22Updated last month
- This document outlines the processes we use to manage our FOSS Contributor Fund initiative at Indeed.☆72Updated 2 years ago
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆57Updated 3 months ago
- GitHub Action for creating software bill of materials using Syft.☆176Updated 3 weeks ago
- GitHub Action wrapper for Spectral - a JSON/YAML/OpenAPI/AsyncAPI/etc linter with custom rule support.☆93Updated 2 months ago
- The containerbase project's base image source☆37Updated this week
- Website and API for OpenSSF Scorecard☆23Updated this week
- Action for generating attestations for workflow artifacts☆43Updated this week
- The Doctor. Just the doctor, no more, no less. The OpenAPI all in one suite.☆20Updated last month
- Docker container that powers the generation of TechDocs static sites☆38Updated last week
- Example of using Actions OIDC token to proxy into a private network☆91Updated last month
- GitHub Action with generator, validator, converter and others - all in one for your AsyncAPI documents with AsyncAPI CLI as backbone☆51Updated 3 weeks ago
- Accelerate financial services firms’ journeys toward open source readiness, by advancing the readiness of participants’ firms and informi…☆37Updated last week
- GitHub token permissions Monitor and Advisor actions☆267Updated last month
- Action for generating SBOM attestations for workflow artifacts☆23Updated this week
- GitHub Action to combine multiple PRs into a single one☆121Updated 3 weeks ago
- ☆26Updated 2 months ago
- Anchore container analysis and scan provided as a GitHub Action☆229Updated this week
- GitHub Action to get a license overview in SPDX format☆14Updated 3 years ago
- Probot & GitHub Action example☆35Updated this week
- Core functionality of OWASP CycloneDX for JavaScript (Node.js or WebBrowser) written in TypeScript.☆15Updated this week
- Find stale repositories in a GitHub organization.☆151Updated this week
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆31Updated 3 months ago
- Plugin for retrieving Dependencytrack metrics in Backstage☆17Updated 5 months ago