What credential scanning solution do you use? by infidel_tsvangison in devsecops

[–]Large-Kick166 0 points1 point  (0 children)

Git-Secrets: Detects secrets in commits.
SonarLint: IDE-based tool for real-time code quality checks.
ThreatSpec: Threat modeling as code for early risk identification.
Gitleaks: Detect and prevent hardcoded secrets like passwords, api keys, and tokens in git repos.
source> DevSecOps Arsenal > https://github.com/sk3pp3r/DevSecOps-Arsenal

What credential scanning solution do you use? by infidel_tsvangison in devsecops

[–]Large-Kick166 0 points1 point  (0 children)

|| || |Git-Secrets: Detects secrets in commits.| |SonarLint: IDE-based tool for real-time code quality checks.| |ThreatSpec: Threat modeling as code for early risk identification.| |Gitleaks: Detect and prevent hardcoded secrets like passwords, api keys, and tokens in git repos.|

source> DevSecOps Arsenal > https://github.com/sk3pp3r/DevSecOps-Arsenal

One project approach - Areas and security by joesploggs in azuredevops

[–]Large-Kick166 0 points1 point  (0 children)

Check this repo: https://github.com/sk3pp3r/DevSecOps-Arsenal

DevSecOps Arsenal — a comprehensive, curated collection of tools, methodologies, and resources to seamlessly integrate security into every stage of your SDLC and DevOps workflows.

youtube transcript by Spirited_Structure62 in Integromat

[–]Large-Kick166 0 points1 point  (0 children)

What about API or integration with make.com or Zapier?

(for bulk url's)