ossf / scorecard-visualizer
Tool for visualizing the Open SSF Scorecard Api data in a human friendly way
☆12Updated this week
Related projects ⓘ
Alternatives and complementary repositories for scorecard-visualizer
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆32Updated 4 months ago
- JavaScript implementation of the package url spec☆26Updated 2 months ago
- Details on npm provenance☆11Updated 2 months ago
- ☆16Updated last week
- Website and API for OpenSSF Scorecard☆22Updated this week
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆26Updated 2 months ago
- Entitlements plugin for a robust audit log☆20Updated this week
- A set of policies for Open Policy Agent to validate OpenAPI definitions.☆18Updated 10 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆46Updated 3 weeks ago
- Error class for Octokit request errors☆15Updated this week
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆95Updated 6 months ago
- Probot & GitHub Action example☆35Updated last week
- Continuous Compliance makes it possible to enforce company policy on repositories. Continuous Compliance will automatically check your re…☆19Updated 5 months ago
- Orchestrate GitHub Actions Security☆256Updated last month
- "Node Package Checker" - A tool to run various checks on npm modules☆16Updated last month
- TUF repository for Sigstore trust root☆88Updated this week
- A Probot app to require consensus from one or more teams☆14Updated last year
- Synchronize GitHub Code Scanning alerts to Jira issues☆81Updated last month
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 3 years ago
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Official GitHub Action for OpenSSF Scorecard.☆265Updated this week
- ☆15Updated 8 months ago
- Purpose-built security agent for hosted runners☆29Updated 3 months ago
- GitHub action to generate a CycloneDX SBOM for Node.js☆20Updated 3 months ago
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆27Updated 5 months ago
- GitHub Actions to run Probot settings and set defaults☆19Updated last year
- An automated tool that verifies Sauce Labs repositories to comply with OSS best practices☆35Updated this week
- An SBOM query language and associated utilities☆54Updated 9 months ago
- Open Source Programs (OSPO) Survey☆71Updated last month
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆119Updated 5 months ago