Stars
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Using a pre-commit hook, Talisman validates the outgoing changeset for things that look suspicious — such as tokens, passwords, and private keys.
Retrieves findings with APPROVED mitigations from an application's policy scan (or sandbox) and creates a baseline file for Pipeline Scan. Mitigations in a "proposed" state will not be retrieved.
Collection of open source projects that include automation of common Veracode Platform tasks, new integrations, HMAC signing libraries, etc
repository has examples of yml files for AzureDevOps, Jenkins, GitLab, Github Actions, CircleCI