snyk / cliLinks
Snyk CLI scans and monitors your projects for security vulnerabilities.
☆5,407Updated this week
Alternatives and similar repositories for cli
Users that are interested in cli are comparing it to the libraries listed below
Sorting:
- scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.☆4,063Updated last week
- nodejsscan is a static security code scanner for Node.js applications.☆2,542Updated 3 months ago
- Vulnerability Static Analysis for Containers☆10,924Updated this week
- An enterprise friendly way of detecting and preventing secrets in code.☆4,412Updated 10 months ago
- Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supp…☆3,583Updated this week
- A service that analyzes docker images and scans for vulnerabilities☆1,593Updated 3 years ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆14,010Updated last week
- ⚠️ Stop saying "you forgot to …" in code review☆5,441Updated last month
- ESLint rules for Node Security☆2,321Updated 2 weeks ago
- Open-Source Unified Vulnerability Management, DevSecOps & ASPM☆4,477Updated this week
- Hunt for security weaknesses in Kubernetes clusters☆4,996Updated last year
- Using a pre-commit hook, Talisman validates the outgoing changeset for things that look suspicious — such as tokens, passwords, and priva…☆2,062Updated this week
- Dockerfile linter, validate inline bash, written in Haskell☆11,920Updated last week
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆863Updated 2 years ago
- Find secrets with Gitleaks 🔑☆24,786Updated 3 weeks ago
- OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependen…☆7,413Updated last week
- a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containe…☆1,219Updated 2 years ago
- node security platform command-line tool☆1,654Updated 7 years ago
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,435Updated 7 months ago
- Supply-chain Levels for Software Artifacts☆1,803Updated this week
- OSS-Fuzz - continuous fuzzing for open source software.☆11,862Updated this week
- CLI tool and library for generating a Software Bill of Materials from container images and filesystems☆8,331Updated this week
- InSpec: Auditing and Testing Framework☆3,044Updated this week
- A tool that facilitates building OCI images.☆8,582Updated last week
- The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in productio…☆9,593Updated last year
- Tfsec is now part of Trivy☆6,948Updated 2 months ago
- ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The foc…☆14,367Updated 2 weeks ago
- The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Nod…☆2,009Updated last year
- OpenSSF Scorecard - Security health metrics for Open Source☆5,255Updated last week
- A vulnerability scanner for container images and filesystems☆11,469Updated this week