Skip to content
@Checkmarx

Checkmarx

Pinned

  1. kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent 1.6k 246

  2. capital Public

    A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.

    CSS 222 37

  3. If you are using a CI/CD platform that doesn’t yet have a dedicated Checkmarx plugin, please check this repository.

    Groovy 5 14

  4. JS-SCP Public

    JavaScript Secure Coding Practices guide

    158 37

Repositories

  • ast-eclipse-plugin Public

    The CxAST Eclipse plugin enables you to import results from a CxAST scan directly into your IDE. You can view the vulnerabilities that were identified in your source code and navigate directly to the vulnerable code in the editor.

    Java 2 Apache-2.0 3 0 1 Updated May 25, 2023
  • ast-teamcity-plugin Public

    The CxAST TeamCity plugin enables you to trigger SAST, SCA, and KICS scans directly from a TeamCity project.

    Java 3 Apache-2.0 0 1 2 Updated May 25, 2023
  • ast-visual-studio-extension Public

    The CxAST Visual Studio plugin enables you to import results from a CxAST scan directly into your IDE

    C# 3 Apache-2.0 4 0 1 Updated May 25, 2023
  • kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent 1,561 Apache-2.0 246 92 33 Updated May 25, 2023
  • ast-azure-plugin Public

    The CxAST Azure DevOps plugin enables you to trigger SAST, SCA, and KICS scans directly from an Azure DevOps pipeline.

    TypeScript 2 Apache-2.0 2 0 0 Updated May 24, 2023
  • ast-github-action Public

    Checkmarx application security testing (AST) GitHub action

    Shell 8 Apache-2.0 19 2 0 Updated May 24, 2023
  • ast-vscode-extension Public

    The Checkmarx One Visual Studio Code plugin (extension) enables you to import results from a Checkmarx One scan directly into your VS Code console. You can view the vulnerabilities that were identified in your source code and navigate directly to the vulnerable code in the editor.

    Hack 9 Apache-2.0 3 3 1 Updated May 24, 2023
  • sast-to-ast-export Public

    CLI tool to export data from CxSAST and import into Checkmarx Application Security Testing Platform

    Go 2 Apache-2.0 5 2 0 Updated May 24, 2023
  • overlay Public

    Overlay is a browser extension helping developers evaluate open source packages before picking them

    HTML 1 MIT 5 0 0 Updated May 24, 2023
  • ast-jetbrains-plugin Public

    The CxAST JetBrains plugin enables you to import results from a CxAST scan directly into your IDE.

    Java 3 Apache-2.0 3 0 0 Updated May 24, 2023