twilio-labs / deadshot
Deadshot is a Github pull request scanner to identify sensitive data being committed to a repository
☆191Updated 6 months ago
Alternatives and similar repositories for deadshot
Users that are interested in deadshot are comparing it to the libraries listed below
Sorting:
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆329Updated 2 weeks ago
- Open source compliance tool for development platforms.☆286Updated last year
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Scans every git push to your Github organisations to find unwanted secrets.☆87Updated last week
- A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.☆190Updated last year
- Add comments to pull requests where tfsec checks have failed☆167Updated last year
- RISKEN is a monitoring tool for visualizing security risks.☆21Updated last week
- GitGoat is an open source tool that was built to enable DevOps and Engineering teams to design and implement a sustainable misconfigurati…☆170Updated 3 months ago
- Is your AWS perimeter secure? Use Powerpipe and Steampipe to check your AWS accounts for public resources, resources shared with untrust…☆111Updated last week
- Scans your Github Actions for security issues☆70Updated this week
- Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec☆112Updated 7 months ago
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆143Updated last week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆189Updated this week
- all paths lead to clouds☆638Updated last year
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆155Updated 8 months ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Hands-on Exercises for "Dangerous attack paths: Modern Development Environment Security - Devices and CI/CD pipelines"☆44Updated 2 years ago
- A library of rules for Conftest used to detect misconfigurations within Terraform configuration files☆191Updated 2 years ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated last year
- ☆112Updated 4 months ago
- Rapidly apply hundreds of security controls in Azure☆184Updated last week
- Compares and analyzes GCP IAM roles.☆77Updated 2 months ago
- GitHub Issue + Trivy Action☆55Updated 2 years ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆64Updated 2 weeks ago
- tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.☆325Updated 2 years ago
- ☆39Updated 4 years ago
- Documenting your Threat Models with HCL☆427Updated last week
- Open Cloud Security Posture Management Engine☆339Updated 3 years ago