oxsecurity / ox-security-scan
A GitHub Action for using OX Security to scan for vulnerabilities in your software projects
☆12Updated 4 months ago
Alternatives and similar repositories for ox-security-scan:
Users that are interested in ox-security-scan are comparing it to the libraries listed below
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆32Updated 2 years ago
- Repository for the generation of OSCAL data types☆23Updated this week
- ☆20Updated last week
- OWASP Foundation Web Respository☆55Updated last year
- Check SPDX SBOM for NTIA minimum elements☆60Updated this week
- A tool to check the security settings of Github Organizations.☆71Updated last year
- SBOM Assembler - A tool to edit SBOM or assemble multiple sboms into a single sbom.☆66Updated this week
- SBOM Grep - search through SBOMs☆22Updated last month
- Publishes BOMs to Dependency-Track from GitHub Actions☆52Updated 5 months ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 11 months ago
- Enrich SBOMs with data from third party services☆162Updated last month
- Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code securi…☆76Updated 7 months ago
- Generate a score for your sbom to understand if it will actually be useful.☆227Updated 7 months ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆91Updated last month
- A tool to create, transform and attest VEX metadata☆133Updated this week
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆89Updated this week
- The Logger that will prevent your data leak☆96Updated last month
- A web based tool for working with CycloneDX BOMs☆37Updated 7 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 9 months ago
- An SBOM query language and associated utilities☆54Updated last year
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated 9 months ago
- Runtime Security Solution for your CI/CD Pipeline☆100Updated last week
- Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts☆23Updated 4 months ago
- GitHub Advanced Security Policy as Code☆81Updated last week
- A BOM repository server for distributing CycloneDX BOMs☆77Updated last year
- ☆98Updated 3 weeks ago
- A tool for preventing the installation of malicious PyPI and npm packages☆130Updated this week
- Potential WG on Artificial Intelligence and Machine Learning (AI/ML)☆69Updated 5 months ago
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆53Updated 7 months ago
- ☆70Updated last week