oss-review-toolkit / ort-ci-github-actionLinks
Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs
☆33Updated 2 months ago
Alternatives and similar repositories for ort-ci-github-action
Users that are interested in ort-ci-github-action are comparing it to the libraries listed below
Sorting:
- Generates SPDX bill-of-material files from a package input and license scan☆13Updated last year
- Official GitHub Action for OpenSSF Scorecard.☆348Updated last week
- Orchestrate GitHub Actions Security☆303Updated this week
- GitHub Action to get a license overview in SPDX format☆14Updated 4 years ago
- GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.☆135Updated this week
- This project creates a repos.json that can be utilized by the SAP InnerSource Portal.☆34Updated last month
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆42Updated 2 months ago
- GitHub Action for submitting Maven dependencies☆57Updated 4 months ago
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆114Updated 5 months ago
- GitHub Action for creating software bill of materials using Syft.☆215Updated this week
- Enrich SBOMs with data from third party services☆213Updated last month
- Open Source Contributor Index☆187Updated 10 months ago
- A light-weight app to audit and inventory large codebases for open source license compliance.☆72Updated this week
- Generate SBOMs with gh CLI☆197Updated 7 months ago
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆218Updated last week
- Find stale repositories in a GitHub organization.☆191Updated this week
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆65Updated last week
- 📖 OSPOlogy - The Study of OSPOs☆232Updated this week
- Submit SBOMs to GitHub's dependency submission API☆17Updated last month
- A GitHub app to check that pull requests follow the Conventional Commits spec☆142Updated this week
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆136Updated last month
- GitHub app for SBOM creation using cdxgen and upload to Dependency-Track☆22Updated this week
- Language-agnostic SLSA provenance generation for Github Actions☆539Updated 3 months ago
- Pin your GitHub actions to a specific hash☆138Updated 6 months ago
- Lists all InnerSource projects of a company in an interactive and easy to use way. Can be used as a template for implementing the "InnerS…☆151Updated 2 months ago
- GitHub token permissions Monitor and Advisor actions☆350Updated last month
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆31Updated last year
- Materials for the ISPO working group☆24Updated this week
- ☆28Updated last year
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆135Updated last year