renovatebot / osv-offline
A collection of packages for using GitHub security advisories in Node.js.
☆15Updated this week
Alternatives and similar repositories for osv-offline:
Users that are interested in osv-offline are comparing it to the libraries listed below
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆33Updated this week
- Auto-generating docs repository for Renovate Bot☆46Updated this week
- The containerbase project's base image source☆38Updated this week
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆27Updated 8 months ago
- JavaScript implementation of the package url spec☆26Updated last week
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆57Updated 3 months ago
- GitHub CLI extension for working with CodeQL☆31Updated this week
- Action for generating attestations for workflow artifacts☆43Updated this week
- ☆32Updated 3 months ago
- Entitlements plugin for a robust audit log☆21Updated this week
- The service side of clearlydefined.io☆48Updated this week
- machine-readable, always up-to-date GitHub App permissions☆12Updated this week
- Privileged Requester Action☆15Updated this week
- The model for the information captured in SPDX version 3 standard.☆76Updated this week
- Search Rekor for entries☆31Updated this week
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆27Updated 3 months ago
- OpenSSF Endusers Working Group☆28Updated 10 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆50Updated last week
- Publish a signed build provenance from your GitHub Actions workflow☆63Updated 8 months ago
- Website and API for OpenSSF Scorecard☆23Updated this week
- A GitHub Action to update the changelog and bump the version of your project for Dependabot pull requests.☆15Updated this week
- Log monitor for Rekor to verify immutability and monitor entries☆30Updated this week
- Renovate internal build tools☆9Updated this week
- Plugin for supporting SPDX in a Maven build.☆52Updated 2 weeks ago
- Purpose-built security agent for hosted runners☆29Updated 6 months ago
- ☆17Updated this week
- Software Bill of Material (SBOM) to Markdown conversion☆9Updated 10 months ago
- A TUF repository and signing tool☆28Updated this week
- TUF repository for Sigstore trust root☆96Updated this week