renovatebot / osv-offline
A collection of packages for using GitHub security advisories in Node.js.
☆15Updated this week
Alternatives and similar repositories for osv-offline:
Users that are interested in osv-offline are comparing it to the libraries listed below
- The containerbase project's base image source☆36Updated this week
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆32Updated 6 months ago
- Auto-generating docs repository for Renovate Bot☆45Updated this week
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆53Updated 2 months ago
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆27Updated 7 months ago
- Search Rekor for entries☆30Updated this week
- Log monitor for Rekor to verify immutability and monitor entries☆30Updated this week
- Helm charts for verifying artifact attestations in Kubernetes☆11Updated last week
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Best practices for OAuth in Browser-Based Apps☆26Updated this week
- Renovate internal build tools☆9Updated this week
- TUF repository for Sigstore trust root☆92Updated this week
- Multi labeler for title, body, comments, commit messages, branch, author or files with automated status checks.☆36Updated 2 weeks ago
- git https shim☆21Updated 7 months ago
- SLSA Proposals☆9Updated 11 months ago
- JavaScript implementation of the package url spec☆26Updated last month
- Action for generating attestations for workflow artifacts☆41Updated this week
- Publish a signed build provenance from your GitHub Actions workflow☆63Updated 7 months ago
- The model for the information captured in SPDX version 3 standard.☆73Updated this week
- ☆31Updated 2 months ago
- Entitlements plugin for a robust audit log☆21Updated this week
- Repo for building the renovate/renovate:full image☆42Updated 11 months ago
- Privileged Requester Action☆15Updated 2 weeks ago
- OpenSSF Working Group on Securing Software Repositories☆94Updated 2 months ago
- A specification for signing methods and formats used by Secure Systems Lab projects.☆70Updated 4 months ago
- ☆18Updated 3 weeks ago
- GitHub CLI extension for working with CodeQL☆31Updated 7 months ago
- Purpose-built security agent for hosted runners☆29Updated 5 months ago
- A TUF repository and signing tool☆26Updated this week
- A GitHub Action to update the changelog and bump the version of your project for Dependabot pull requests.☆15Updated this week