devsecops topic
rekono
Pentesting automation platform that combines hacking tools to complete assessments
actions-secrets
Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API keys, .env and config files and more
stackql
Query, provision and operate Cloud and SaaS resources and APIs using an extensible SQL based framework
stackql-provider-registry
Registry for cloud and SaaS providers for StackQL, generated from extensions to the providers OpenAPI3 specification
pipeline-templates
A catalog of templates for installing and managing different CI/CD technologies.
hijack-kubernetes
This repo includes a demo that shows how a Kubernetes cluster can be hijacked and how to prevent it using common best practices.
gitavscan
Git Anti-Virus Scan Action - Detect trojans, viruses, malware & other malicious threats.
cscanner
An open source, multi-cloud DevSecOps compliance checker
sonar-cloudformation-plugin
Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov
sdp-pipeline-framework
The Solutions Delivery Platform runtime pipeline framework