Projects with this topic
-
Test project for Java Gradle
Updated -
Test project with: Language: Scala - Package Manager: Sbt
Updated -
-
A minimal custom SAST scanner that detects when web applications are configured to run in debug mode. Built in Rust as a tutorial for integrating third-party security scanners with GitLab Secure.
Updated -
AI Code Security — four agents that catch what SAST misses in AI-generated code. Built on GitLab Duo Agent Platform.
Updated -
-
-
A project containing "vulnerable" code for testing GitLab SAST functionality.
Updated -
Go package for implementing customized rulesets for SAST analyzers
Updated -
Collection of shell scripts packaged with SAST analyzers to enable post-analyzer integrations.
Updated -
Test project for Java Gradle with Kotlin build script
Updated -
Test project with: Language: Go - Package Manager: Go mod
Updated -
Test project with: Language: Python - Package Manager: Pipenv
Updated -
Test project with: Language: Java - Package Manager: Maven - Type: MultiModule
Updated -
Test project with: Language: Php - Package Manager: Composer
Updated -
Go packages to implement analyzers
Updated -
This project serves as a comprehensive reference implementation for enterprise DevSecOps practices, demonstrating how security, automation, and observability integrate seamlessly in modern cloud applications.
Updated -
This project sets up Static Application Security Testing (SAST) in a GitLab CI/CD pipeline using two tools:
NJSScan → A security scanner specialized for JavaScript applications. It analyzes source code and flags insecure coding patterns and vulnerabilities.
Semgrep → A lightweight, multi-language static analysis tool that uses rulesets (such as p/javascript) to detect vulnerabilities, insecure practices, and style issues across different programming languages.
Updated -
AI-powered security scanner that finds vulnerabilities and provides one-click fixes directly in GitLab merge requests. A reusable CI/CD Catalog component built with Google Cloud Vertex AI.
Updated -
Components for running Puma Scan in GitLab CI/CD pipelines.
Updated