naveensrinivasan
Contributes to fun OSS projects like https://github.com/ossf and is a Google Open Source Peer Bonus award winner for 2021,2022 and 2024.
Pinned Repositories
minefield
Graphing SBOM's Fast.
ghactionspermissions
ManagedStackExplorer
Managed call stack for .NET applications
SafeImage
Testing of inappropriate images
scorecard
OpenSSF Scorecard - Security health metrics for Open Source
scorecard-action
Official GitHub Action for OpenSSF Scorecard.
sigstore
Common go library shared across sigstore services and clients
naveensrinivasan's Repositories
naveensrinivasan/naveensrinivasan.github.io
naveensrinivasan/docs
naveensrinivasan/guac
GUAC aggregates software security metadata into a high fidelity graph database.
naveensrinivasan/guac-ai-mole
🥑 Inspect and understand an organization's software supply chain that enables stakeholders to make actionable decisions about software supply chain security
naveensrinivasan/naveensrinivasan
naveensrinivasan/safeposix-rust
Rust implementation of SafePOSIX
naveensrinivasan/uds-security-hub
All things about securing UDS
naveensrinivasan/archivista
Archivist is a graph and storage service for in-toto attestations. Archivist enables the discovery and retrieval of attestations for software artifacts.
naveensrinivasan/cloud-native-security-with-ebpf
《eBPF 云原生安全:原理与实践》书中示例程序的完整源代码
naveensrinivasan/cosign
Container Signing
naveensrinivasan/dotvim
My vim settings
naveensrinivasan/ebpf-vm
naveensrinivasan/eladmin-1
根据原eladmin项目进行改造。整合ELK、ShardingSphere多数据源、多Redis、消息队列等
naveensrinivasan/gittuf
A security layer for Git repositories
naveensrinivasan/go-git-playground
naveensrinivasan/go-witness
Go implementation of witness
naveensrinivasan/httpcache
A Transport for http.Client that will cache responses according to the HTTP RFC
naveensrinivasan/lind-docs
Documentation for the Lind Project
naveensrinivasan/lula
The Compliance Validator
naveensrinivasan/ossf-cve-benchmark
The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebases using a variety of static analysis security testing (SAST) tools and generate reports to evaluate those tools.
naveensrinivasan/pepr
Type safe K8s middleware for humans
naveensrinivasan/protobom
A universal SBOM representation in protocol buffers
naveensrinivasan/sbom-cve-data
naveensrinivasan/scorecard
OSS Security Scorecards
naveensrinivasan/scorecard-commits
Analyze the commit data from Scorecard API with the help of BigQuery
naveensrinivasan/scorecard-customchecks
naveensrinivasan/TtlMap
A golang map in which entries expire after given a time period
naveensrinivasan/uds-cli
naveensrinivasan/uds-runtime
UDS Runtime API & UI
naveensrinivasan/zarf
DevSecOps for Air Gap & Limited-Connection Systems. https://zarf.dev/