pixee / codemodder-specs
☆14Updated this week
Alternatives and similar repositories for codemodder-specs:
Users that are interested in codemodder-specs are comparing it to the libraries listed below
- A GitHub Action that allows Pixee to fix issues found by other code scanners☆14Updated last month
- Security toolkit for the Python community☆14Updated last week
- a framework for building java codemods☆40Updated this week
- Implementation of the Pixee CLI☆31Updated this week
- A set of security APIs meant to help secure Java code☆19Updated 2 months ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆86Updated this week
- ☆113Updated 8 months ago
- Enrich SBOMs with data from third party services☆158Updated last week
- GitHub Action for submitting Maven dependencies☆48Updated 4 months ago
- A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mi…☆137Updated this week
- Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects☆175Updated last week
- Python implementation of OWASP CycloneDX☆74Updated this week
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD …☆144Updated this week
- Automation to Incorporate GitHub Security Alerts Into your Business Workflow☆23Updated last year
- Gradle plugin that scans the dependencies of a Gradle project using Sonatype platforms: OSS Index and Lifecycle.☆78Updated last month
- Gradle Plugin for Extracting Dependency Information to send to GitHub☆88Updated 2 weeks ago
- GitHub Action for JReleaser☆37Updated last month
- Java/JVM implementation of the package url spec☆26Updated 8 months ago
- Calculates dependencies for a Gradle build-target and submits the list to the Dependency Submission API☆80Updated last year
- Reproducible Central: rebuild instructions for artifacts published to (Maven) Central Repository☆108Updated this week
- GitHub Advanced Security Policy as Code☆79Updated this week
- GitHub app for SBOM creation using cdxgen and upload to Dependency-Track☆17Updated this week
- Report on quality of SBOM contents☆16Updated 2 months ago
- A set of Gradle plugins that enable the use of jlink in Gradle builds☆17Updated this week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆72Updated 3 months ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆33Updated this week
- SBOM quality score - Quality metrics for your sboms☆193Updated this week
- GitHub Advance Security Compliance Action☆132Updated 2 years ago
- A taxonomy of all official CycloneDX property namespaces and names☆15Updated 2 months ago