cicd-goat VS github-leak-audit

Compare cicd-goat vs github-leak-audit and see what are their differences.

cicd-goat

A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges. (by cider-security-research)

github-leak-audit

A GitHub workflow to identify employees that have leaked your organization's code (by lawndoc)
InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
cicd-goat github-leak-audit
17 1
1,806 9
1.2% -
5.0 0.0
28 days ago 12 months ago
Python Python
Apache License 2.0 GNU Affero General Public License v3.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

cicd-goat

Posts with mentions or reviews of cicd-goat. We have used some of these posts to build our list of alternatives and similar projects.

github-leak-audit

Posts with mentions or reviews of github-leak-audit. We have used some of these posts to build our list of alternatives and similar projects.
  • Thinking Like a Hacker: Finding Source Code Leaks on GitHub
    1 project | dev.to | 11 Jan 2023
    One is an app I developed to be published alongside this blog post: https://github.com/lawndoc/github-leak-audit. The app uses GitHub’s API to monitor all your GitHub organization members’ personal public repos for potential leaks. It is specifically targeted for the accidental leak scenario described in this blog post. It will detect previously unknown code and new repos. To set it up in your organization, you’ll need to fork the repo under your organization’s ownership, set up a GitHub app or PAT secret for it, and enable the GitHub Actions workflow. Detailed instructions are in the README.

What are some alternatives?

When comparing cicd-goat and github-leak-audit you can also consider the following projects:

apicheck - The DevSecOps toolset for REST APIs

WALKOFF - A flexible, easy to use, automation framework allowing users to integrate their capabilities and devices to cut through the repetitive, tedious tasks slowing them down. #nsacyber

dockerfile-security - Static security checker for Dockerfiles

jenkins-update-center - Jenkins mirror update center generator

goose - A robot for mapping github events into actionable HTTP payloads

packj - Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

sbt-dependency-check - SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). :rainbow:

git-alerts - Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files

faraday - Open Source Vulnerability Management Platform