Thanks to visit codestin.com
Credit goes to GitHub.com

Skip to content
View mackowski's full-sized avatar

Block or report mackowski

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

The GitHub Action for Microsoft Application Inspector

Shell 18 12 Updated Jul 10, 2025

Python tool for converting files and office documents to Markdown.

Python 85,548 4,943 Updated Jan 8, 2026

This is a step-by-step guide to implementing a DevSecOps program for any size organization

2,026 345 Updated Dec 21, 2024

Language-agnostic SLSA provenance generation for Github Actions

Go 540 171 Updated Oct 20, 2025

GitHub token permissions Monitor and Advisor actions

Python 351 27 Updated Nov 24, 2025

A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.

JavaScript 2,579 321 Updated Jan 1, 2026

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Python 31,186 4,344 Updated Jan 21, 2026

🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!

HTML 2,253 572 Updated Dec 8, 2025

Vulnerable app with examples showing how to not use secrets

Java 1,390 522 Updated Jan 22, 2026

Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki

212 36 Updated Oct 31, 2024

tools for sandboxing your dependency graph

JavaScript 1,119 77 Updated Jan 21, 2026

OpenSSF Security Tooling Working Group

322 53 Updated Jul 6, 2025

🐶 A curated list of Web Security materials and resources.

12,994 1,749 Updated May 2, 2025

Semgrep rules corresponding to the OWASP ASVS standard

27 4 Updated Nov 2, 2020

This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.

2,789 555 Updated Sep 17, 2024

Application Security Verification Standard

HTML 3,311 788 Updated Dec 24, 2025

A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon

JavaScript 1,265 187 Updated Jan 26, 2024

Node.js Ecosystem Security Working Group

JavaScript 533 131 Updated Jan 14, 2026

A public version of Unity's internal SSDLC. Meant to provide an example framework, not just to share with others, but to also take contributions and continue to improve and evolve.

174 33 Updated Mar 1, 2022

Principles to help you design and deploy a zero trust architecture

1,691 168 Updated Apr 25, 2023

OWASP Foundation Web Respository

Java 19 29 Updated Dec 22, 2025

Hands on labs and code to help you learn, measure, and build using architectural best practices.

Python 2,098 1,057 Updated Jan 14, 2026

Awesome Node.js Security resources

1 Updated Nov 13, 2019

A collection of browser-based side channel attack vectors.

759 54 Updated Mar 19, 2024

goSDL

PHP 521 81 Updated Nov 3, 2025

Automatically exported from code.google.com/p/domxsswiki

HTML 546 80 Updated May 12, 2018

The Big List of Naughty Strings is a list of strings which have a high probability of causing issues when used as user-input data.

Python 47,564 2,161 Updated Apr 18, 2024

threatspec - continuous threat modeling, through code

Python 372 53 Updated Dec 30, 2020

A Continuous Threat Modeling methodology

324 72 Updated Jun 24, 2022

secureCodeBox (SCB) - continuous secure delivery out of the box

JavaScript 939 175 Updated Jan 22, 2026
Next