Add GitHub Security Audit

This commit is contained in:
onboardcrew
2024-07-17 10:37:00 +02:00
committed by GitHub
parent 9a799d8e4f
commit 698625e04b

View File

@@ -657,7 +657,9 @@ This list results from Pull Requests, reviews, ideas, and work done by 1600+ peo
* [Doppler](https://doppler.com/) — Universal Secrets Manager for application secrets and config, with support for syncing to various cloud providers. Free for five users with basic access controls.
* [Dotenv](https://dotenv.org/) — Sync your .env files, quickly & securely. Stop sharing your .env files over insecure channels like Slack and email, and never lose an important .env file again. Free for up to 3 teammates.
* [GitGuardian](https://www.gitguardian.com) — Keep secrets out of your source code with automated secrets detection and remediation. Scan your git repos for 350+ types of secrets and sensitive files Free for individuals and teams of 25 developers or less.
* [GitHub Security Audit](https://www.gitguardian.com/github-security-audit) - A service to evaluate organization's exposure to secrets leaks on public GitHub repositories. The audit identifies hardcoded secrets and provides a detailed report with a score from A to E.
* [Have I been pwned?](https://haveibeenpwned.com) — REST API for fetching the information on the breaches.
* [HasMySecretLeaked](https://gitguardian.com/hasmysecretleaked) - Search across 20 million exposed secrets in public GitHub repositories, gists, issues,and comments for Free
* [hostedscan.com](https://hostedscan.com) — Online vulnerability scanner for web applications, servers, and networks. Ten free scans per month.
* [Infisical](https://infisical.com/) — Open source platform that lets you manage developer secrets across your team and infrastructure: everywhere from local development to staging/production 3rd-party services. Free for up to 5 developers.
* [Internet.nl](https://internet.nl) — Test for modern Internet Standards like IPv6, DNSSEC, HTTPS, DMARC, STARTTLS and DANE
@@ -687,7 +689,6 @@ This list results from Pull Requests, reviews, ideas, and work done by 1600+ peo
* [Virushee](https://virushee.com/) — Privacy-oriented file/data scanning powered by hybrid heuristic and AI-assisted engine. It is possible to use internal dynamic sandbox analysis. Limited to 50MB per file upload
* [Vulert](https://vulert.com) - Vulert continuously monitors your open-source dependencies for new vulnerabilities, recommends fixes, without requiring installation or access to your codebase. Free for open-source projects.
* [Escape GraphQL Quickscan](https://escape.tech/) - One-click security scan of your GraphQL endpoints. Free, no login required.
* [HasMySecretLeaked](https://gitguardian.com/hasmysecretleaked) - Search across 20 million exposed secrets in public GitHub repositories, gists, issues,and comments for Free
**[⬆️ Back to Top](#table-of-contents)**