Projects with this topic
-
Test project with: Language: Java - Package Manager: Maven
Updated -
GitLab PipeIntel - Scan GitLab CI pipelines for security and correctness issues using OPA policies and ShellCheck
Updated -
SAST Analyzer for detecting leaked secrets
Updated -
SAST Analyzer based on SpotBugs and Find Sec Bugs.
Updated -
SAST Analyzer for Phoenix Elixir projects based on sobelow
Updated -
SAST Analyzer based on Semgrep
Updated -
SAST Analyzer for Salesforce Apex projects based on pmd
Updated -
SAST Analyzer for Kubernetes manifests based on kubesec
Updated -
GitLab Analyzer for Infrastructure as Code (IaC) projects that calls kics. This analyzer is written in Go using the command library shared by all analyzers.
Updated -
GitLab's semgrep container image augmented with hundreds of additional Node.js/JavaScript/Typescript and Go rules from Semgrep's rule repository.
Updated -
Static Application Security Testing (SAST) checks your source code for known vulnerabilities.
Updated -
Test project with: Language: Python - Package Manager: Pip
Updated -
Test project for Java Gradle
Updated -
Test project with: Language: Scala - Package Manager: Sbt
Updated -
Codequality jobs in pipelines https://docs.gitlab.com/ee/user/project/merge_requests/code_quality.html
Updated -
-
Go package for implementing shared vulnerability command interface for secure analyzers
Updated -
A minimal custom SAST scanner that detects when web applications are configured to run in debug mode. Built in Rust as a tutorial for integrating third-party security scanners with GitLab Secure.
Updated -
A post-processor for computing the scope+offset fingerprint.
UpdatedUpdated -
Rule Repository for GitLab SAST
Updated