Prevent merging of malicious code in pull requests
-
Updated
Mar 20, 2025 - Python
Prevent merging of malicious code in pull requests
Focused malicious code detection ruleset, with a high protection-to-noise ratio
Repository containing source code of MixewayFlow service that is Swiss army knife for DevSecOps Teams
A comprehensive security scanner for GitHub Actions workflows, providing deep supply chain analysis to detect vulnerabilities, misconfigurations, and compliance issues in your CI/CD pipelines.
Collection of custom GHA and reusable workflows.
Security Engineering reference: taint analysis benchmark comparing Pysa, CodeQL & Semgrep on a controlled Django app (16 OWASP Top 10 cases). Includes CI/CD integration with SARIF, ground truth validation, and enterprise scaling patterns.
Add a description, image, and links to the cicd-security topic page so that developers can more easily learn about it.
To associate your repository with the cicd-security topic, visit your repo's landing page and select "manage topics."