thoughtworks / talisman
Using a pre-commit hook, Talisman validates the outgoing changeset for things that look suspicious — such as tokens, passwords, and private keys.
☆1,952Updated 2 months ago
Alternatives and similar repositories for talisman:
Users that are interested in talisman are comparing it to the libraries listed below
- An enterprise friendly way of detecting and preventing secrets in code.☆3,940Updated 2 weeks ago
- Tfsec is now part of Trivy☆6,767Updated this week
- a ruggedization framework that embodies the principle "be mean to your code"☆983Updated 2 years ago
- OpenSSF Scorecard - Security health metrics for Open Source☆4,773Updated this week
- A service that analyzes docker images and scans for vulnerabilities☆1,589Updated 2 years ago
- Terratest is a Go library that makes it easier to write automated tests for your infrastructure code.☆7,585Updated this week
- InSpec: Auditing and Testing Framework☆2,885Updated this week
- goSDL☆525Updated 2 years ago
- A vault for securely storing and accessing AWS credentials in development environments☆8,614Updated 6 months ago
- Quick and Easy server testing/validation☆5,673Updated last month
- Vulnerability Static Analysis for Containers☆10,508Updated last week
- Write tests against structured configuration data using the Open Policy Agent Rego query language☆2,919Updated this week
- A collection of postmortem templates☆1,335Updated last year
- Repository for BLESS, an SSH Certificate Authority that runs as a AWS Lambda function☆2,737Updated 6 months ago
- Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark☆7,249Updated this week
- CloudMapper helps you analyze your Amazon Web Services (AWS) environments.☆6,066Updated 7 months ago
- Export existing AWS resources to Terraform style (tf, tfstate) / No longer actively maintained☆4,284Updated 3 years ago
- Application Security Automation☆527Updated last year
- Dockerfile linter, validate inline bash, written in Haskell☆10,703Updated 2 months ago
- Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start☆2,835Updated last month
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,198Updated this week
- Snyk CLI scans and monitors your projects for security vulnerabilities.☆5,027Updated this week
- (NOT MAINTAINED) Build And Testing Environments as Code Tool☆684Updated last year
- Command-line tools for working with Architecture Decision Records☆4,768Updated 9 months ago
- A project security/vulnerability/risk scanning tool☆360Updated 3 years ago
- CLI for managing secrets☆2,490Updated this week
- Hunt for security weaknesses in Kubernetes clusters☆4,792Updated 11 months ago
- validate the structure of your container images☆2,366Updated this week
- Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.☆4,357Updated 4 years ago
- CLI tool and library for generating a Software Bill of Materials from container images and filesystems☆6,591Updated this week