Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
-
Updated
Jul 7, 2025 - Shell
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
Welcome to CloudCaptain, your one-stop-shop for all things cloud-related!
Integrate SonarQube scanner to GitHub Actions
Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project contain one click docker-compose file which configure and run images from docker hub.
Helps you continuously monitor and fix common security vulnerabilities in your Django application.
A centralized hub for platform engineering teams, providing resources, best practices, and automation tools. Includes IaC templates, blueprints, and operational guides to help build scalable, secure, and efficient platforms for cloud-native environments and DevSecOps workflows.
A collection of technical and sales resources related to Prisma Cloud Compute and Prisma Cloud Enterprise created for the PANW Channel Partner Ecosystem and other engineers working with the solution
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about DevSecOps in Cybersecurity.
This repo includes a demo that shows how a Kubernetes cluster can be hijacked and how to prevent it using common best practices.
Git Anti-Virus Scan Action - Detect trojans, viruses, malware & other malicious threats.
All that is required to run MobSF in the ci
Gixposed is a powerful command-line tool designed to search the commit history of Git repositories for sensitive information, such as API keys and access tokens. Its purpose is to help developers and security professionals quickly identify and remediate exposed sensitive informations in their codebases.
Multi-tenancy assets for IBM clients to build SaaS
Collection of roadmaps, tools, best practice, resources about DevSecOps
OWASP EKS Goat is a deliberately vulnerable EKS cluster environment to explore AWS cloud-native security through hands-on attack and defense labs with walkthrough.
This GitHub Action allows you to run Gitleaks in your GitHub workflow.
Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.
To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."