Awesome Nodejs
Section: Security · GitHub app that provides security feedback in pull requests.
Entry
Appears in 4 awesome lists
A GitHub App that gives you instant security feedback in your Pull Requests.
Section: Security · GitHub app that provides security feedback in pull requests.
Section: Multi tools · A GitHub App that gives you instant security feedback in your Pull Requests.
Section: Development · A GitHub App that provides security feedback in Pull Requests.
Section: Detecting · A GitHub App that provides security feedback in Pull Requests.
High level crypto library for storing data (AES), secure messaging (ECC + ECDSA / RSA + PSS + PKCS#7) and session-oriented, forward secrecy data exchange (ECDH key agreement, ECC & AES encryption). Ported on many languages and platforms, suitable for client-server infastructures.
Static analysis for infrastructure as code manifests (Terraform, Kubernetes, Cloudformation, Helm, Dockerfile, Kustomize) find security misconfiguration and fix them.
Open-Source static code analysis tool to discover, filter and prioritize security risks and vulnerabilities leading to sensitive data exposures (PII, PHI, PD). Highly configurable and easily extensible, built for security and engineering teams.
Scans IaC projects for security vulnerabilities, compliance issues, and infrastructure misconfiguration. Currently working with Terraform projects, Kubernetes manifests, Dockerfiles, AWS CloudFormation Templates, and Ansible playbooks.
In-process file-upload security middleware for Node.js that scans untrusted uploads before storage to detect malware, MIME spoofing, and risky archives, maintained by pompelmi.
Terraform static analysis tool that prevents potential security issues by checking cloud misconfigurations at build time and directly integrates with the HCL parser for better results. Checks for violations of AWS, Azure and GCP security best practice recommendations.
微型哈希模块,在 Node.js 和浏览器中使用原生 crypto API。
Brute-force and DDoS attack protection.