slsa-framework / azure-devops-demoLinks
SLSA Azure DevOps Pipelines Extension
☆29Updated last year
Alternatives and similar repositories for azure-devops-demo
Users that are interested in azure-devops-demo are comparing it to the libraries listed below
Sorting:
- Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the …☆195Updated 3 weeks ago
- Technical Advisory Council☆134Updated last week
- Supply Chain Integrity Model☆105Updated 2 years ago
- Generate SBOMs with gh CLI☆197Updated 7 months ago
- SLSA implementation of Community Specification governance☆24Updated 8 months ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆222Updated 7 months ago
- ☆75Updated 3 weeks ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 3 weeks ago
- Synchronize GitHub Code Scanning alerts to Jira issues☆95Updated last month
- Website and API for OpenSSF Scorecard☆29Updated 2 weeks ago
- Manage a uniform team of security managers for every organization in your enterprise☆25Updated last week
- Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead☆13Updated 2 years ago
- The OpenSSF Vulnerability Disclosures Working Group seeks to help improve the overall security of the open source software ecosystem by h…☆205Updated 2 months ago
- Action to detect if a secret is initially detected in a pull request☆18Updated 2 weeks ago
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆133Updated last month
- Machine-readable specification for the attestation of security-relevant data.☆67Updated this week
- Scan GitHub Actions Workflow logs for IOCs☆16Updated last week
- Github Action implementation of SLSA Provenance Generation☆50Updated this week
- A proof-of-concept SLSA provenance generator for Jenkins☆24Updated last year
- GitHub Advanced Security Policy as Code☆91Updated 2 weeks ago
- OpenID Shared Signals Working Group Repository☆72Updated last week
- Official GitHub Action for OpenSSF Scorecard.☆345Updated last week
- Open Source Software Secure Supply Chain Framework☆238Updated 3 years ago
- SLSA Proposals☆11Updated last year
- TUF repository for Sigstore trust root☆117Updated this week
- GitHub Action for creating software bill of materials using Syft.☆213Updated last week
- in-toto Attestation Framework☆316Updated last week
- CVE Automation Working Group☆180Updated last week
- OpenSSF Security Tooling Working Group☆320Updated 5 months ago
- OpenSSF Working Group on Securing Software Repositories☆125Updated 2 weeks ago