| aquasecurity/tfsec |
6,428 |
|
0 |
18 |
about 2 years ago |
411 |
September 11, 2023 |
15 |
mit |
Go |
| Security scanner for your Terraform code |
| bridgecrewio/checkov |
6,284 |
|
0 |
6 |
about 2 years ago |
3,177 |
December 07, 2023 |
131 |
apache-2.0 |
Python |
| Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew. |
| oss-review-toolkit/ort |
1,405 |
|
0 |
70 |
about 2 years ago |
13 |
November 23, 2023 |
342 |
apache-2.0 |
Kotlin |
| A suite of tools to automate software compliance checks. |
| lunasec-io/lunasec |
1,355 |
|
0 |
0 |
over 2 years ago |
3 |
April 05, 2022 |
98 |
other |
TypeScript |
| LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/ |
| OpenSCAP/openscap |
1,217 |
|
0 |
0 |
about 2 years ago |
0 |
|
219 |
lgpl-2.1 |
XSLT |
| NIST Certified SCAP 1.2 toolkit |
| OpenSCAP/container-compliance |
224 |
|
0 |
0 |
over 9 years ago |
0 |
|
0 |
gpl-3.0 |
Shell |
| Assessing compliance of a container |
| bridgecrewio/checkov-action |
188 |
|
0 |
0 |
about 2 years ago |
0 |
|
16 |
apache-2.0 |
HCL |
| This GitHub Action runs Checkov against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues. |
| CovenantSQL/CookieScanner |
108 |
|
0 |
0 |
almost 7 years ago |
0 |
|
5 |
apache-2.0 |
Go |
| Cookie Scanner for GDPR compliance |
| triat/terraform-security-scan |
107 |
|
0 |
0 |
over 2 years ago |
0 |
|
5 |
mit |
Shell |
| Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec |
| Cingulara/openrmf-docs |
101 |
|
0 |
0 |
over 2 years ago |
0 |
|
4 |
gpl-3.0 |
JavaScript |
| Documentation on the OpenRMF application, including scripts to run the whole stack as well as just infrastructure with documentation on using the tool. |