yahoo / GitHub-Security-Alerts-WorkflowLinks
Automation to Incorporate GitHub Security Alerts Into your Business Workflow
☆22Updated 2 years ago
Alternatives and similar repositories for GitHub-Security-Alerts-Workflow
Users that are interested in GitHub-Security-Alerts-Workflow are comparing it to the libraries listed below
Sorting:
- Enrich SBOMs with data from third party services☆192Updated 3 weeks ago
- Generate SBOMs with gh CLI☆193Updated 3 months ago
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆102Updated last week
- Generate a score for your sbom to understand if it will actually be useful.☆233Updated last year
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- GitHub Advanced Security Policy as Code☆87Updated last week
- ☆65Updated last year
- SPDX Merge tool☆47Updated 4 months ago
- ☆81Updated last year
- Examples of SPDX files for software combinations☆135Updated 2 months ago
- The OpenSSF Vulnerability Disclosures Working Group seeks to help improve the overall security of the open source software ecosystem by h…☆198Updated 2 weeks ago
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last month
- A tool to check the security settings of Github Organizations.☆72Updated 2 years ago
- Check SPDX SBOM for NTIA minimum elements☆67Updated this week
- Machine-readable specification for the attestation of security-relevant data.☆62Updated last month
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆95Updated last week
- OpenSSF Working Group on Securing Software Repositories☆115Updated 3 months ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆213Updated 3 months ago
- This project is deprecated. Use https://github.com/returntocorp/semgrep instead☆74Updated last year
- Technical Advisory Council☆129Updated 2 weeks ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆37Updated 4 months ago
- sbomasm: The Complete SBOM Management Toolkit☆78Updated this week
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆55Updated last year
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆96Updated last year
- OpenVEX Specification☆158Updated 3 months ago
- Action to detect if a secret is initially detected in a pull request☆17Updated 2 weeks ago
- Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.☆108Updated last week
- GitHub Action for creating software bill of materials using Syft.☆200Updated this week
- Example of using Actions OIDC token to proxy into a private network☆97Updated 5 months ago
- OpenSSF Security Tooling Working Group☆315Updated 2 months ago