slsa-framework / azure-devops-demo
SLSA Azure DevOps Pipelines Extension
☆26Updated 6 months ago
Alternatives and similar repositories for azure-devops-demo:
Users that are interested in azure-devops-demo are comparing it to the libraries listed below
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆178Updated 11 months ago
- TUF repository for Sigstore trust root☆96Updated this week
- Supply Chain Integrity Model☆104Updated last year
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- Technical Advisory Council☆116Updated last week
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 6 months ago
- CoseSignTool is a platform-agnostic command line application to COSE sign files and validate COSE signatures. CoseHandler is a library o…☆43Updated last month
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- Log monitor for Rekor to verify immutability and monitor entries☆30Updated this week
- OPENSSF SECURITY INSIGHTS: Repository for development of the draft standard, where requests for modification should be made via Github Is…☆56Updated last month
- Mend Implementation Examples☆28Updated 2 weeks ago
- OWASP Foundation Web Respository☆10Updated last year
- Website and API for OpenSSF Scorecard☆23Updated this week
- Entitlements plugin for a robust audit log☆21Updated this week
- Generate SBOMs with gh CLI☆177Updated 4 months ago
- ☆70Updated 2 weeks ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated last year
- ☆19Updated this week
- in-toto Attestation Framework☆261Updated last week
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts☆22Updated 3 months ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆81Updated 2 weeks ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆35Updated this week
- Search Rekor for entries☆31Updated this week
- A TUF repository and signing tool☆28Updated this week
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆195Updated 2 weeks ago
- Microsoft Security DevOps for GitHub Actions.☆116Updated 3 months ago
- Github action to generate BoM and upload to OWASP dependency track for vulnerability analysis☆39Updated 4 months ago
- SLSA implementation of Community Specification governance☆19Updated this week