soprasteria / sonar-reportLinks
Generates an html report from SonarQube
☆103Updated last year
Alternatives and similar repositories for sonar-report
Users that are interested in sonar-report are comparing it to the libraries listed below
Sorting:
- A curated list of Software Component Analysis (SCA) books, courses - free and paid, videos, tools, and tutorials.☆110Updated last year
- A utility to (re-)import findings and language data into DefectDojo☆43Updated last year
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆73Updated 6 months ago
- A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mi…☆157Updated 3 weeks ago
- Deprecated; please use fcli instead☆27Updated 5 months ago
- A comprehensive list of software composition analysis tools.☆161Updated 3 months ago
- Generates analysis reports from SonarQube web API.☆599Updated 2 months ago
- Checkmarx Scan and Result Orchestration☆99Updated last month
- ☆22Updated 2 years ago
- Main repository for the official Dependency-Track Jenkins plugin☆50Updated this week
- Integrates Dependency-Check reports into SonarQube☆683Updated 3 months ago
- A Trivy plugin that converts JSON report to SonarQube format☆44Updated last year
- Web application that allows to load a Trivy report in json format and displays the vulnerabilities of a single target in an interactive d…☆165Updated last week
- Zap baseline scanner in Docker with authentication☆103Updated last year
- ☆557Updated this week
- SonarQube Licensecheck Plugin☆177Updated this week
- Docker image for SonarScanner CLI☆202Updated last month
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆862Updated 2 years ago
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆447Updated last month
- The OWASP DevSecOps Guideline explains how we can implement a secure pipeline and use best practices and introduce tools that we can use …☆80Updated last month
- Frontend UI for Dependency-Track☆148Updated this week
- Scanning and analysis for Black Duck SCA products.☆189Updated last week
- SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It suppor…☆202Updated last week
- OWASP Kubernetes security and compliance tool [WIP]☆108Updated 2 years ago
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆596Updated 9 months ago
- A Trivy plugin that scans and outputs the results (vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repo…☆123Updated last month
- Publishes BOMs to Dependency-Track from GitHub Actions☆58Updated last year
- SonarQube plugin to analyze Shell scripts with ShellCheck☆60Updated 3 months ago
- A VS Code Extension for Trivy☆162Updated last week
- secureCodeBox (SCB) - continuous secure delivery out of the box☆941Updated this week