OSCAL

Security framework

Provides standardized formats for representing security controls and their assessments

Open Security Controls Assessment Language (OSCAL)

GitHub

683 stars
89 watching
185 forks
Language: XSLT
last commit: almost 2 years ago
Linked from 1 awesome list

assessmentauthorizationautomationcompliancejsonnistoscalschemasecurityxmlyaml

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
usnistgov/macos_securityProvides automated security guidance and configuration settings for macOS systems.1,823
jaliss/securesocialProvides authentication APIs for Play Framework applications using OAuth and OpenID protocols1,187
0x444144/oscp_templateA structured approach to learning and practicing penetration testing using the OSCP methodology14
openscanner/xguardianA security scanner for OSX applications that detects potential vulnerabilities in URL scheme hijack, bundle ID hijack, and keychain hijack.41
g-solaria/osintforpentestsDocumentation and resource collection for OSINT and penetration testing activities61
o1egl/pasetoA platform-agnostic security token implementation in Go, designed to provide secure stateless tokens.865
cncf/tag-securityAn initiative to improve cloud native security by developing standards and best practices.2,104
otrf/ossemProvides standardization and documentation of security event logs to improve data transformation and analysis1,245
eudoxia0/hermeticSecurity system for Common Lisp web applications43
haskell-servant/servantA Haskell-based type-level web development framework1,834
transmissions11/solcurityAn opinionated security and code quality standard for Solidity smart contracts.2,064
cisagov/scubagearAutomates assessment of Microsoft 365 tenant configurations against CISA's Secure Configuration Baseline policies1,813
osu-crypto/batchdualexAn implementation of a secure protocol for two-party computation to protect the integrity and confidentiality of computations14
sannykim/solsecA collection of resources to study Solana smart contract security, auditing, and exploits.624