step-security / ai-codewiseLinks
AI-Powered Code Reviews for Best Practices & Security Issues Across Languages
☆21Updated 2 months ago
Alternatives and similar repositories for ai-codewise
Users that are interested in ai-codewise are comparing it to the libraries listed below
Sorting:
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more☆503Updated last week
- ☆15Updated last month
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 2 years ago
- Enrich SBOMs with data from third party services☆196Updated last month
- ☆57Updated 3 years ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆101Updated this week
- ☆67Updated last year
- Orchestrate GitHub Actions Security☆297Updated 2 months ago
- OpenVEX Specification☆160Updated 4 months ago
- Purpose-built security agent for hosted runners☆38Updated 2 months ago
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆33Updated 5 months ago
- Software Supply Chain Security Platform☆352Updated last week
- Verify provenance from SLSA compliant builders☆288Updated 2 months ago
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- in-toto is a framework to secure the software supply chain.☆71Updated 9 months ago
- Runtime Security Solution for your CI/CD Pipeline☆110Updated 4 months ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆497Updated this week
- A tool to create, transform and attest VEX metadata☆160Updated this week
- Lambda function for verifying signed images in ECS☆33Updated last year
- A tool to check the security settings of Github Organizations.☆72Updated 2 years ago
- Linux agent used to submit realtime SBOMs and dependency usage information to EdgeBit☆14Updated 8 months ago
- Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools☆18Updated 2 weeks ago
- An SBOM query language and associated utilities☆54Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)