awesome-security-pipeline
Practical, continuously verified open-source DevSecOps tools and a tested CI/CD security pipeline for GitHub Actions, covering SBOM, SAST, SCA, secrets, containers, and signing.
File Explorer
- comparison-dispute.yml
- data-correction.yml
- new-tool.yml
- recipe-failure.yml
- maintenance-check.yml
- pr-validation.yml
- sbom-benchmark.yml
- security-baseline.yml
- PULL_REQUEST_TEMPLATE.md
- security-baseline.yml
- security-pipeline-architecture.mmd
- security-pipeline-architecture.svg
- social-preview.png
- package-lock.json
- package.json
- fixtures.json
- README.md
- github-actions-security-tools.md
- sbom-tools.md
- verified-open-source-security-pipeline.md
- github-actions-baseline-spec.md
- methodology.md
- reference-stack.md
- kubernetes.yaml
- .dockerignore
- Dockerfile
- go.mod
- main.go
- main_test.go
- Dockerfile
- go.mod
- privileged-pod.yaml
- unsafe.go
- gitleaks-fixture.toml
- synthetic-secret.txt
- README.md
- 2026-07-16.json
- 2026-07-16.md
- 2026-08-02.json
- 2026-08-02.md
- latest.json
- latest.md
- README.md
- install-sbom-benchmark-tools.sh
- publish_sbom_benchmark.py
- sbom_benchmark.py
- test_sbom_benchmark.py
- .gitignore
- .gitleaks.toml
- CHANGELOG.md
- CODE_OF_CONDUCT.md
- CONTRIBUTING.md
- LICENSE
- README.md
# Use via CDN
jsDelivrjsDelivr serves any public GitHub repository as a CDN with zero setup. Pick a version and a file to get a ready-to-paste link and snippet.
Link
Example
# Project Badges
// repository documentation
Was this content helpful?
(0 ratings)
