swinslow / npm-spdx
Golang tool to pull and summarize NPM license info
☆12Updated 2 years ago
Alternatives and similar repositories for npm-spdx:
Users that are interested in npm-spdx are comparing it to the libraries listed below
- Take this course to learn how to create fine-grained, least-privilege HashiCorp Vault roles for GitHub Action workflows using GitHub OIDC…☆13Updated 9 months ago
- Command-line tools for working with Architecture Decision Records☆15Updated 3 years ago
- The Auditree data gathering and reporting tool.☆13Updated 5 months ago
- ☆27Updated last week
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- TACOS framework structural details☆20Updated last year
- Create a Docker image containing several security tools☆16Updated 8 months ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated last year
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated this week
- Template repository for new images☆25Updated last year
- Protocol Buffer specifications☆26Updated this week
- Github Action implementation of SLSA Provenance Generation☆47Updated this week
- Compare vulnerability scanners results (to make them better!)☆16Updated 2 weeks ago
- A simple website introducing the CNAB project.☆16Updated last year
- in-toto is a framework to secure the software supply chain.☆70Updated 3 weeks ago
- Prevent leaks with gitleaks, and use tests to validate☆32Updated last month
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 7 months ago
- Sample code snippets for consuming the CloudSploit API☆13Updated last year
- AWS container security survey 2020☆11Updated 4 years ago
- 📖 A repo of configuration examples for StackHawk's Hawkscan!☆15Updated last month
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated last year
- Darkbit Cloud Security Tools☆25Updated 4 years ago
- Tool providing easy IAM setup on EKS for Amazon Managed Service for Prometheus (AMP) users.☆11Updated last year
- 🌄Landscape for popular open source projects specific to the mainframe. This interactive landscape, similar to that of the CNCF Landscape…☆14Updated this week
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆41Updated last year
- A generic skeleton project for quickly getting a new cisagov project started.☆15Updated last month
- A specification for signing methods and formats used by Secure Systems Lab projects.☆70Updated 4 months ago
- SBOM Grep - search through SBOMs☆21Updated last month
- ☆12Updated last year
- Terraform module to configure Vault for GitHub OIDC authentication from Action runners.☆27Updated 5 months ago