philips-labs / continuous-compliance-action
Continuous Compliance makes it possible to enforce company policy on repositories. Continuous Compliance will automatically check your repository for mandatory files or requirements. When possible, it will create detailed Github issue with instructions on how to resolve it.
☆21Updated 10 months ago
Alternatives and similar repositories for continuous-compliance-action:
Users that are interested in continuous-compliance-action are comparing it to the libraries listed below
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Sets up Open Policy Agent CLI in your GitHub Actions workflow.☆48Updated last year
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆32Updated 2 years ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated this week
- An SBOM query language and associated utilities☆54Updated last year
- GitHub Advanced Security Policy as Code☆82Updated 2 weeks ago
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 7 months ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆84Updated last week
- ☆79Updated 11 months ago
- GitHub Advance Security Compliance Action☆133Updated 2 years ago
- Slack alert bot for matching Github Audit Events☆10Updated 4 months ago
- A GitHub action for organizations that enables advanced security code scanning on all new repos☆39Updated last week
- Load used actions from an entire organization☆17Updated last week
- ☆42Updated 5 months ago
- A GitHub action to measure GitHub Actions workflow metrics. An enabler to put the concept discussed in the post to practice - https://www…☆23Updated last year
- Website and API for OpenSSF Scorecard☆24Updated this week
- Compare vulnerability scanners results (to make them better!)☆16Updated 3 weeks ago
- vscode extension for tfsec☆30Updated 2 years ago
- Example of using Actions OIDC token to proxy into a private network☆92Updated 2 weeks ago
- Go library for Sigstore signing and verification☆18Updated last year
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆55Updated 8 months ago
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- ☆56Updated 2 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆62Updated this week
- GitHub Code Scanning Mean Time to Remediate (GCSMTTR)☆14Updated last year
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆35Updated this week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆130Updated last week
- A Terraform module to manage GitHub Teams. https://github.com/☆53Updated 10 months ago
- Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts☆23Updated last week
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆45Updated last year