securesauce / precaution-beta
Precaution provides a simple, automated code review for GitHub projects by running code linters with a security focus on pull requests.
☆1Updated 2 years ago
Alternatives and similar repositories for precaution-beta
Users that are interested in precaution-beta are comparing it to the libraries listed below
Sorting:
- The Great Multi-Factor Authentication (MFA) Distribution Project of the Open Source Security Foundation (OpenSSF). We work to distribute …☆54Updated 3 years ago
- A set of utilities and classes for working with Open Policy Agent based tools, including Gatekeeper and Conftest☆39Updated 6 months ago
- NIST OSCAL SDK and CLI☆38Updated 5 years ago
- The Container Security Book—a free book for practitioners☆82Updated 5 years ago
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆93Updated 2 weeks ago
- Kernel assisted microcontainer packer☆24Updated 6 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆46Updated last year
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 3 months ago
- A tool that takes two or more micro SBOMs and composes them into one distributable SBOM☆23Updated 2 years ago
- Repo to hold veracode related issues and code snippets☆9Updated 7 years ago
- A draft standard for communicating a cryptographic record of build inputs for software artifacts.☆24Updated last month
- Kubernetes Common Configuration Scoring System☆124Updated 2 years ago
- Prospector permits automated collection of a wide range of metrics of open source projects useful in evaluating the project.☆66Updated 6 years ago
- A Docker build for OWASP Zed Attack Proxy to be used in CI/CD pipelines☆27Updated 4 years ago
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆42Updated 2 years ago
- RBAC in Kubernetes visualizer☆24Updated 5 years ago
- ☆39Updated 4 years ago
- An AI assistant to prioritize security vulnerabilities☆13Updated last week
- Docker Enterprise Edition Security Controls for Compliance☆66Updated 2 years ago
- Inspect your builds to look for changes in filesystem, network traffic and running processes.☆13Updated 6 years ago
- ☆38Updated 3 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- A place for documenting threats and mitigations related to containers orchestrators (Kubernetes, Swarm etc)☆25Updated 6 years ago
- A documentation and tracking project with the goal of making package management systems more secure.☆50Updated 4 years ago
- Repository for various tools around security☆42Updated 10 months ago
- OWASP Threat Dragon with Gitlab Integration☆26Updated 7 years ago
- ☆13Updated last week
- bomsh is collection of tools to explore the OmniBOR idea☆21Updated 6 months ago
- SBOM Explorer - Discover and pull public SBOMs☆18Updated last week