oxsecurity / ox-security-scanLinks
A GitHub Action for using OX Security to scan for vulnerabilities in your software projects
☆12Updated 9 months ago
Alternatives and similar repositories for ox-security-scan
Users that are interested in ox-security-scan are comparing it to the libraries listed below
Sorting:
- The Logger that will prevent your data leak☆102Updated 6 months ago
- Enrich SBOMs with data from third party services☆190Updated last week
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆234Updated last week
- GitHub Advanced Security Policy as Code☆87Updated 2 weeks ago
- Generate a score for your sbom to understand if it will actually be useful.☆232Updated last year
- Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package manager…☆774Updated this week
- A tool to create, transform and attest VEX metadata☆153Updated last week
- Anchore container analysis and scan provided as a GitHub Action☆253Updated this week
- Dynamic GitHub Actions from Wolfi packages☆44Updated 3 months ago
- ☆27Updated 8 months ago
- Utility that provides an API platform for validating, querying and managing BOM data☆118Updated 2 weeks ago
- Utility that provides an API and CLI to identify licenses and legal terms☆52Updated last month
- GitHub Action for creating software bill of materials using Syft.☆200Updated last week
- Examples of integrating the Snyk CLI into a CI/CD system☆93Updated 9 months ago
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆33Updated 2 years ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆211Updated 3 months ago
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆578Updated 5 months ago
- Official GitHub Action for OpenSSF Scorecard.☆330Updated 2 weeks ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆757Updated 8 months ago
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- GitHub actions of KICS scan - Keeping Infrastructure as Code Secure☆51Updated 2 weeks ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆493Updated this week
- Orchestrate GitHub Actions Security☆295Updated 3 weeks ago
- Examples of Custom Secret Scanning Patterns☆164Updated 6 months ago
- ☆536Updated this week
- SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It suppor…☆172Updated this week
- An always up to date collection of useful tools for your Kubernetes linting and auditing needs.☆16Updated this week
- Publishes BOMs to Dependency-Track from GitHub Actions☆55Updated 10 months ago
- Runtime Security Solution for your CI/CD Pipeline☆108Updated 2 months ago
- A VS Code Extension for Trivy☆146Updated this week