owenrumney / go-sarif
Go library for sarif - Static Analysis Results Interchange Format
☆66Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for go-sarif
- 🚰 Static taint analysis for Go programs.☆57Updated 3 months ago
- Creates CycloneDX Software Bill of Materials (SBOM) from Go modules☆136Updated this week
- Go implementation of the package url spec☆54Updated 3 months ago
- A Server Side Request Forgery (SSRF) protection library. Made with 🖤 by Doyensec LLC.☆93Updated 6 months ago
- A lightweight CLI tool that finds system calls being called inside golang applications.☆31Updated 3 years ago
- Dependency Parser for Multiple Programming Languages☆146Updated 5 months ago
- Go library to consume and produce CycloneDX Software Bill of Materials (SBOM)☆79Updated last week
- ☆94Updated 3 months ago
- ☆56Updated 2 years ago
- ☆194Updated 2 years ago
- Automatic fuzz targets generation for Golang packages☆53Updated 4 months ago
- ☆95Updated this week
- A golang library for parsing deb package versions☆36Updated this week
- Intentionally vulnerable Go web app.☆42Updated 11 months ago
- Static code analysis tool to find unsafe usages in Go packages and their dependencies☆41Updated 4 years ago
- fzgo is a prototype of "make fuzzing a first class citizen" in the go command. Supports rich signatures & generating fuzz functions.☆112Updated 2 years ago
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆131Updated last week
- Common Vulnerability Scoring System (CVSS)☆24Updated 8 months ago
- ☆51Updated 8 months ago
- ✨🔐 CNCF Fuzzers☆113Updated this week
- A tool for interacting with live processes/containers☆22Updated 2 years ago
- Go Taint CHeck Analyser☆44Updated 5 years ago
- Reliable project licenses detector.☆131Updated 5 months ago
- Static analysis for CloudFormation templates to identify common misconfiguration☆58Updated 2 years ago
- Static Analysis Library for Containers☆199Updated last year
- Auto-gen Go fuzzing wrappers from normal code. Finds buggy call sequences, including data races & deadlocks. Supports rich signature type…☆105Updated 3 months ago
- Creates CycloneDX Software Bill-of-Materials (SBOM) from Go projects. So you can use it with DependencyTrack to monitor security issues i…☆21Updated 4 years ago
- Go parser for maven Project Object Model (POM) file☆23Updated 2 years ago
- Go library for Sigstore signing and verification☆48Updated this week
- A Go library for CPE (A Common Platform Enumeration 2.3)☆34Updated last year