oxsecurity / ox-security-scanLinks
A GitHub Action for using OX Security to scan for vulnerabilities in your software projects
☆13Updated last year
Alternatives and similar repositories for ox-security-scan
Users that are interested in ox-security-scan are comparing it to the libraries listed below
Sorting:
- Enrich SBOMs with data from third party services☆214Updated last week
- The Logger that will prevent your data leak☆105Updated 3 weeks ago
- Generate a score for your sbom to understand if it will actually be useful.☆237Updated last year
- GitHub Advanced Security Policy as Code☆95Updated last month
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆265Updated last week
- Orchestrate GitHub Actions Security☆303Updated 3 weeks ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆767Updated last year
- A tool to check the security settings of Github Organizations.☆75Updated 2 years ago
- Examples of integrating the Snyk CLI into a CI/CD system☆103Updated last year
- Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package manager…☆889Updated this week
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆596Updated 10 months ago
- ☆138Updated this week
- OWASP Foundation Web Respository☆101Updated last month
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆223Updated 8 months ago
- boostsecurityio/poutine☆356Updated last week
- Utility that provides an API platform for validating, querying and managing BOM data☆124Updated last month
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆514Updated this week
- ☆559Updated this week
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆215Updated this week
- GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment☆492Updated 7 months ago
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆828Updated 10 months ago
- A full insecure kubernetes application for testing security tools☆90Updated 3 months ago
- Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning☆97Updated this week
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆79Updated last week
- The security workflow engine!☆136Updated 2 months ago
- A Python client for the Snyk API.☆98Updated last year
- ☆140Updated last week
- A list of cloud security tools and vendors.☆184Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆110Updated this week
- Documenting your Threat Models with HCL☆453Updated last month