tamp-build
Pinned Loading
Repositories
- tamp-findings Public
Self-hosted security/quality dashboard built on the Tamp ecosystem - SARIF/SBOM/coverage ingest, risk scoring, federal-readiness evidence (CISA SSDF, VEX, POA&M, KEV, VDP, SLSA provenance).
- tamp-trivy Public
Tamp wrapper for aquasecurity/trivy — image / IaC config / filesystem scanning with SARIF output. A Tamp satellite.
- tamp-zap Public
Tamp wrappers for the ZAP DAST scanner — Automation Framework plans (contexts/auth, OpenAPI import, spider, AJAX spider, active scan) with native SARIF output for the Tamp security pipeline. Docker-delivered, no JRE needed. A Tamp satellite.
- tamp-nuclei Public
Tamp wrappers for the Nuclei vulnerability scanner (MIT) — template-driven probing plus DAST/fuzzing templates and OpenAPI input, with native SARIF export for the Tamp security pipeline. Single static Go binary, no runtime deps. A Tamp satellite.
- tamp Public
- tamp-ingest-v1 Public
Typed C# client + DTOs for the tamp-ingest-v1 egress contract — sbom / findings / coverage / test-results / scan-runs / sbom-vulnerabilities.
- tamp-axe-core Public
Tamp wrappers for standalone web accessibility scanning — @axe-core/cli for the scan, axe-sarif-converter for SARIF emission feeding the Tamp security pipeline. A Tamp satellite.
- tamp-kubectl Public
Tamp wrappers for kubectl — Apply / Get / Delete / Describe / Rollout / PortForward / Logs / Exec / Scale / SetImage. A Tamp satellite.
- tamp-defectdojo Public
Tamp REST client for DefectDojo (API v2) — SARIF + FPF reimport. A Tamp satellite.
- tamp-dependency-track Public
Tamp REST client for OWASP Dependency-Track v4.x — CycloneDX BOM upload, analysis polling, FPF export. A Tamp satellite.
People
This organization has no public members. You must be a member to see who’s a part of this organization.
Top languages
Loading…
Most used topics
Loading…