devsecops topic
bomber
Scans Software Bill of Materials (SBOMs) for security vulnerabilities
kdt
CLI to interact with Kondukto
prisma-cloud-scan
GitHub action to scan container images with Palo Alto Networks' Prisma Cloud
container-security-steps
Docker and Kubernetes security steps to help you create, build, test, and run safer in containers
SecuSphere
Efficient DevSecOps
SecObserve
SecObserve is an open source vulnerability management system for software development and cloud environments. It supports a variety of open source vulnerability scanners and integrates easily into CI/...
actions-all-in-one
All of our GitHub Actions rolled into one. Or as we like to say: One GitHub Action to rule them all!
bytesafe-ce
Bytesafe Community Edition is a security platform that protects organizations from open source software supply chain attacks.
actions-log4j
A GitHub Action that scans your public web applications for log4j vulnerabilities after every deployment. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've j...
awesome-containerized-security
A collection of tools to improve your containerized apps security posture