Rasmey SARETH's starred repositories

psqlgraph

Library for graph-like storage in postgresql using sqlalchemy

Language:PythonLicense:Apache-2.0Stargazers:22Issues:0Issues:0

dep-scan

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

Language:PythonLicense:MITStargazers:954Issues:0Issues:0

nebula

A distributed, fast open-source graph database featuring horizontal scalability and high availability

Language:C++License:Apache-2.0Stargazers:10411Issues:0Issues:0

vulnrichment

A repo to conduct vulnerability enrichment.

License:CC0-1.0Stargazers:409Issues:0Issues:0

transformers

🤗 Transformers: State-of-the-art Machine Learning for Pytorch, TensorFlow, and JAX.

Language:PythonLicense:Apache-2.0Stargazers:129551Issues:0Issues:0

Open-ITDR

Authomize open solutions for partners and customers

Language:PythonLicense:MITStargazers:28Issues:0Issues:0

Unified-Cybersecurity-Ontology

Unified Cybersecurity Ontology

Stargazers:87Issues:0Issues:0

cyclonedx-node-yarn

Create CycloneDX Software Bill of Materials (SBOM) from Node.js Yarn projects.

Language:JavaScriptLicense:Apache-2.0Stargazers:16Issues:0Issues:0

Torii

Torii ⛩️ is a simple, powerful and extensible open-source Internal Developer Portal

Language:TypeScriptLicense:GPL-3.0Stargazers:174Issues:0Issues:0

comunica

📬 A knowledge graph querying framework for JavaScript

Language:TypeScriptLicense:NOASSERTIONStargazers:416Issues:0Issues:0

minder

Software Supply Chain Security Platform

Language:GoLicense:Apache-2.0Stargazers:225Issues:0Issues:0

cyclonedx-python-lib

Python implementation of OWASP CycloneDX

Language:PythonLicense:Apache-2.0Stargazers:61Issues:0Issues:0

s2c2f

The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously improve the S2C2F guide which outlines and defines how to securely consume Open Source Software (OSS) dependencies into the developer’s workflow.

License:NOASSERTIONStargazers:170Issues:0Issues:0

witness

Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact provenance.

Language:GoLicense:Apache-2.0Stargazers:396Issues:0Issues:0

archivista

Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for software artifacts.

Language:GoLicense:Apache-2.0Stargazers:56Issues:0Issues:0

pike

Pike is a tool for determining the permissions or policy required for IAC code

Language:GoLicense:Apache-2.0Stargazers:528Issues:0Issues:0

podman-py

Python bindings for Podman's RESTful API

Language:PythonLicense:Apache-2.0Stargazers:230Issues:0Issues:0

cvelist

Pilot program for CVE submission through GitHub. CVE Record Submission via Pilot PRs ending 6/30/2023

Stargazers:1280Issues:0Issues:0

transparency-exchange-api

A standard API specification for exchanging supply chain artifacts and intelligence

License:Apache-2.0Stargazers:35Issues:0Issues:0

sbom4python

A tool to generate a SBOM (Software Bill of Materials) for an installed Python module

Language:PythonLicense:Apache-2.0Stargazers:24Issues:0Issues:0

specification

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX

Language:XSLTLicense:Apache-2.0Stargazers:344Issues:0Issues:0

Software-Supply-Chain-Security

A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling, books, articles and a plethora of learning resources from the web.

Stargazers:121Issues:0Issues:0

cyclonedx-python

CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

Language:PythonLicense:Apache-2.0Stargazers:226Issues:0Issues:0

xeol

A scanner for end-of-life (EOL) software and dependencies in container images, filesystems, and SBOMs

Language:GoLicense:Apache-2.0Stargazers:334Issues:0Issues:0

awesome-gdpr

Protection of natural persons with regard to the processing of personal data and on the free movement of such data.

License:NOASSERTIONStargazers:205Issues:0Issues:0

public-apis

A collective list of free APIs

Language:PythonLicense:MITStargazers:302930Issues:0Issues:0

slsa-plugin

A Jenkins plugin to create SLSA provenance attestations

Language:JavaLicense:MITStargazers:5Issues:0Issues:0

regal

Regal is a linter for Rego, with the goal of making your Rego magnificent!

Language:GoLicense:Apache-2.0Stargazers:241Issues:0Issues:0

schemathesis

Supercharge your API testing, catch bugs, and ensure compliance

Language:PythonLicense:MITStargazers:2187Issues:0Issues:0

CSAF

CISA CSAF Security Advisories

Stargazers:39Issues:0Issues:0