oxsecurity / ox-security-scanLinks
A GitHub Action for using OX Security to scan for vulnerabilities in your software projects
☆13Updated 10 months ago
Alternatives and similar repositories for ox-security-scan
Users that are interested in ox-security-scan are comparing it to the libraries listed below
Sorting:
- Enrich SBOMs with data from third party services☆196Updated last month
- The Logger that will prevent your data leak☆102Updated 7 months ago
- GitHub Advanced Security Policy as Code☆89Updated last month
- Generate a score for your sbom to understand if it will actually be useful.☆233Updated last year
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆245Updated this week
- Orchestrate GitHub Actions Security☆295Updated last month
- A tool to check the security settings of Github Organizations.☆72Updated 2 years ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆758Updated 9 months ago
- OpenVEX Specification☆158Updated 4 months ago
- GitHub Action for creating software bill of materials using Syft.☆202Updated 3 weeks ago
- Microsoft Defender for Cloud threat matrix for Kubernetes☆26Updated 2 years ago
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆55Updated last year
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆215Updated 4 months ago
- Runtime Security Solution for your CI/CD Pipeline☆109Updated 3 months ago
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆33Updated 2 years ago
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- ☆110Updated this week
- Official GitHub Action for OpenSSF Scorecard.☆337Updated this week
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆497Updated this week
- sbomasm: The Complete SBOM Management Toolkit☆86Updated last week
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆814Updated 6 months ago
- A tool to create, transform and attest VEX metadata☆159Updated this week
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆354Updated this week
- GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment☆481Updated 3 months ago
- Generate SBOMs with gh CLI☆193Updated 4 months ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆119Updated 2 weeks ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆95Updated 7 months ago
- Language-agnostic SLSA provenance generation for Github Actions☆501Updated 3 months ago
- ☆50Updated last week
- GitHub action to scan container images with Palo Alto Networks' Prisma Cloud☆60Updated 6 months ago