GitHub Advanced Security (advanced-security)

GitHub Advanced Security

advanced-security

Geek Repo

Home of Advanced Security solutions that we can share with the world

Location:United States of America

Home Page:https://github.com

Twitter:@github

Github PK Tool:Github PK Tool

GitHub Advanced Security's repositories

secret-scanning-custom-patterns

Examples of Custom Secret Scanning Patterns

Language:HTMLLicense:MITStargazers:118Issues:3Issues:20

codeql-queries

[Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instead

Language:CodeQLLicense:MITStargazers:78Issues:1Issues:0

policy-as-code

GitHub Advanced Security Policy as Code

Language:PythonLicense:MITStargazers:59Issues:4Issues:29

maven-dependency-submission-action

GitHub Action for submitting Maven dependencies

Language:TypeScriptLicense:MITStargazers:45Issues:5Issues:40

codeql-extractor-iac

CodeQL Extractor, Library, and Queries for Infrastructure as Code

Language:CodeQLLicense:MITStargazers:32Issues:2Issues:17

ghas-to-csv

Play with GHAS API to provide posture data over time

Language:PythonLicense:MITStargazers:29Issues:3Issues:20

ghas-reviewer-app

GitHub Advanced Security Pull Request Security Team required review GitHub App

Language:PythonLicense:MITStargazers:28Issues:3Issues:9

codeql-bundle-action

Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations

Language:ShellLicense:MITStargazers:19Issues:1Issues:3

probot-security-alerts

Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts

Language:TypeScriptLicense:MITStargazers:15Issues:1Issues:3

sample-codeql-pipeline-config

Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning

License:MITStargazers:12Issues:1Issues:0

grab_ql

Grab some/all of CodeQL CLI binary, QL library, VSCode starter workspace, VSCode and VSCode QL extension

Language:PythonLicense:MITStargazers:8Issues:3Issues:12

SARIF-viewer

JetBrains IDE plugin for displaying SARIF from GHAS or from a local file

Language:KotlinLicense:MITStargazers:8Issues:0Issues:0

secret-scanning-review-action

Action to detect if a secret is initially detected in a PR commit

Language:PowerShellLicense:MITStargazers:8Issues:2Issues:6

demo-java

GitHub Advanced Security scanning tutorial repository for Java

Language:JavaLicense:MITStargazers:7Issues:4Issues:0

codeql-development-toolkit

The CodeQL Development toolkit is a tool for making common CodeQL development workflows easier.

Language:C#License:MITStargazers:6Issues:0Issues:0

codeql-summarize

CodeQL Summary Generator

Language:PythonLicense:MITStargazers:6Issues:2Issues:17

ghe-cross-instance-committers

A script which will return the total number of unique de-deuped active committers across multiple GHES instances

Language:TypeScriptLicense:MITStargazers:6Issues:1Issues:2

codeql-bundle

CLI to build a custom CodeQL bundle

Language:PythonLicense:MITStargazers:5Issues:0Issues:0

codeql-sarif-security-standard-annotator

Compare a CodeQL SARIF results file to a security standard CWE list and annotate the SARIF rules with a tag to highlight results applicable to the security standard

Language:TypeScriptLicense:MITStargazers:5Issues:1Issues:1

spotbugs-findsecbugs-action

Run SpotBugs with FindSecBugs on Java and other JVM languages (e.g. Scala), and upload the results to GitHub Code Scanning

teams-secret-scanning-notifier-azure-function

Microsoft Teams notifier for Secret Scanning alerts from GitHub Advanced Security, using a GitHub App and Azure Function

Language:TypeScriptLicense:MITStargazers:5Issues:2Issues:0

cocoapods-dependency-submission-action

CocoaPods Lockfile Dependency Submission Action

Language:PythonLicense:MITStargazers:4Issues:2Issues:3

brew-dependency-submission-action

Brew Lockfile Dependency Submission Action

Language:PythonLicense:MITStargazers:3Issues:2Issues:1

slack-secret-scanning-notifier-azure-function

Slack notifier for Secret Scanning alerts from GitHub Advanced Security, using a GitHub App and Azure Function

Language:TypeScriptLicense:MITStargazers:2Issues:2Issues:0

ghas-mttr

GitHub Advanced Security Mean Time to Remediate (MTTR)

Language:PythonLicense:MITStargazers:1Issues:3Issues:3

secret-scanning-tools

Testing Suite for GitHub Secret Scanning Custom Patterns

Language:PythonLicense:MITStargazers:1Issues:2Issues:1

reusable-workflows

Advanced Security Reusable GitHub Actions Workflows

License:MITStargazers:0Issues:0Issues:0