philips-labs / continuous-compliance-actionLinks
Continuous Compliance makes it possible to enforce company policy on repositories. Continuous Compliance will automatically check your repository for mandatory files or requirements. When possible, it will create detailed Github issue with instructions on how to resolve it.
☆22Updated 2 weeks ago
Alternatives and similar repositories for continuous-compliance-action
Users that are interested in continuous-compliance-action are comparing it to the libraries listed below
Sorting:
- Github Action implementation of SLSA Provenance Generation☆50Updated this week
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆33Updated 3 years ago
- ☆51Updated this week
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆54Updated 2 weeks ago
- Generate SBOMs with gh CLI☆195Updated 6 months ago
- Website and API for OpenSSF Scorecard☆28Updated last week
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆77Updated last week
- GitHub Advanced Security Policy as Code☆91Updated this week
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- GitHub Action for creating software bill of materials using Syft.☆211Updated this week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆135Updated last week
- Example of using Actions OIDC token to proxy into a private network☆102Updated 8 months ago
- ☆81Updated last year
- ☆58Updated 3 years ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆40Updated 3 weeks ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆95Updated 2 weeks ago
- Orchestrate GitHub Actions Security☆301Updated last week
- An SBOM query language and associated utilities☆54Updated last year
- A tool to create, transform and attest VEX metadata☆167Updated this week
- ⚡️Snyk API powered import tool to help you automate & monitor a large scale import into Snyk organizations. Designed for onboarding with …☆43Updated 2 weeks ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- SLSA level 3 action☆11Updated last year
- A GitHub action for organizations that enables advanced security code scanning on all new repos☆42Updated this week
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- An Action to wrap creating an SBOM via REST API☆20Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 4 months ago
- Enrich SBOMs with data from third party services☆201Updated 3 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated this week
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆57Updated last week
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆135Updated last year