☆156Jun 3, 2026Updated last week
Alternatives and similar repositories for security-baseline
Users that are interested in security-baseline are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Privateer plugin for scanning the security hygiene of a GitHub repository.☆27Updated this week
- ORBIT: Open Resources for Baselines, Interoperability, and Tooling☆25Mar 19, 2026Updated 2 months ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆48Jun 2, 2026Updated last week
- Validate SPDX 2 and 3 SBOM against NTIA, CISA, and other minimum element requirements.☆89Jun 3, 2026Updated last week
- Privateer is a plugin-based framework for security & compliance evaluations.☆22May 28, 2026Updated last week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Machine-readable specification for the attestation of security-relevant data.☆75May 11, 2026Updated last month
- Global Cyber Policy Working Group☆114Apr 21, 2026Updated last month
- Working Group on Artificial Intelligence and Machine Learning (AI/ML) Security☆171May 1, 2026Updated last month
- Vuln Disclosure WG's new SIG☆11Jan 2, 2024Updated 2 years ago
- Minimizing rework for governance activities.☆56Jun 3, 2026Updated last week
- A TUF repository and signing tool☆46Updated this week
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆232May 26, 2025Updated last year
- AI Software Bill of Materials for EU AI Act☆12Jan 18, 2024Updated 2 years ago
- sbomasm: The Complete SBOM Management Toolkit☆118Jun 3, 2026Updated last week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Log monitor for Rekor to verify immutability and monitor entries☆54Jun 2, 2026Updated last week
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆364Updated this week
- Technical Advisory Council☆145Jun 1, 2026Updated last week
- SBOM Search - Context aware search in SBOM repositories☆32Nov 24, 2025Updated 6 months ago
- A Python client for the Global CVE Allocation System.☆18May 20, 2026Updated 3 weeks ago
- A Yocto meta-layer for generating CycloneDX SBOMs☆30Jun 2, 2026Updated last week
- ☆18Jun 4, 2026Updated last week
- A standard API specification for exchanging supply chain artifacts and intelligence☆108May 20, 2026Updated 3 weeks ago
- FINOS Common Cloud Controls☆82Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A Python library to parse, validate and create SPDX documents.☆251Mar 13, 2026Updated 2 months ago
- Website and API for OpenSSF Scorecard☆28Jun 3, 2026Updated last week
- Framework for Structure Aware Fuzzing. Allows to build own stamps that would convert pulp-data that came from fuzzer to data with structu…☆18Mar 4, 2026Updated 3 months ago
- A library to convert between Sigstore Bundles and PEP 740 Attestation objects☆15May 26, 2026Updated 2 weeks ago
- Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.☆132Jun 3, 2026Updated last week
- OpenSSF Working Group on Securing Software Repositories☆128Apr 6, 2026Updated 2 months ago
- Generate a score for your sbom to understand if it will actually be useful.☆243Aug 13, 2024Updated last year
- The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for ope…☆1,031May 20, 2026Updated 3 weeks ago
- The model for the information captured in SPDX version 3 standard.☆102Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- QEMU-based Memory Sanitizer for binary software.☆23Nov 19, 2025Updated 6 months ago
- Perform code analysis to detect potentially dangerous vulnerabilities☆15Apr 16, 2024Updated 2 years ago
- Red team oriented key finder and correlator☆21Nov 21, 2025Updated 6 months ago
- A community-driven guide to asynchronous communication principles, practices, and tools for remote teams☆17Oct 3, 2024Updated last year
- A self assessment tool to help understand your level in the SANS Vulnerability Management Maturity Model (VMMM).☆54Apr 2, 2026Updated 2 months ago
- Run multiple-node, decentralized k3s clusters on Github action runners for test and development!☆11Nov 20, 2021Updated 4 years ago
- SBOM Vulnerability Scanning & Assessment tool☆65Updated this week