Skip to content
This repository has been archived by the owner on Oct 16, 2023. It is now read-only.

snyk/awesome-snyk-community

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

21 Commits
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation


A curated list of awesome Snyk community contributions

Awesome License

List inspired by the awesome list thing.


Contents

The List

Tools Powered by Snyk

Snyk CLI, Plugins, Extensions, Filters

Useful in for running snyk locally and for automating CI/CD workflows

  • Snyk CLI - The Snyk CLI
  • Snyk asdf plugin - asdf plugin for Snyk. Easily manage multiple versions of Snyk CLI in your runtime environment
  • Snyker - An opinionated CLI wrapper around Snyk for purging vulnerabilities from Node projects.
  • snyk-to-html - Create template-based HTML artifacts from Snyk CLI JSON output; useful for generating build artifacts
  • snyk-issues-to-html - This command line utility uses the Snyk API to export the list of all reported issues for a Snyk organization to a static HTML page.
  • snyk-disallow - Create and manage a list of unwanted dependencies against which you can test your application with Snyk
  • snyk-filter - Filter CLI test results and/or fail CI builds using custom criteria
  • snyk-licenses-texts - Generate a Snyk organization-level report showing licenses and copyright attribution for all dependencies in use
  • snyk-delta - Prevent new vulns feature for CLI projects, comparing the the delta between your current test and an existing snapshot. Particularly useful when running CLI-based scans, like in your local environment, git hooks, etc.\
  • snyk-cli-with-longformprojectname - It contains --longformprojectname option, allowing project versions to be appended to the project name. Addressing very specific needs primarily around maven projects. This project is continuously updated and in sync with github.com/snyk/snyk
  • snyk-scm-refresh - Keeps Snyk projects in sync with their associated Github or Github Enterprise repos
  • helm-snyk - Check for vulnerabilities in container images referenced in your helm charts
  • Snyk User Sync Tool - sync user org memberships from an external source into Snyk
  • Snyk History Scanner - A very thin wrapper around the Snyk CLI tool to make it possible to monitor specific versioned releases of software
  • snyk2spdx - Convert Snyk CLI output to SPDX format
  • snyk-cleanup-archived-github-repositories - Remove archived repositories from Snyk
  • snyk-watcher-lambda - snyk-watcher is triggered via a Gitlab System Hook which calls an AWS Lambda via AWS API Gateway. Keeps Snyk projects in sync with their associated Gitlab Enterprise repos

SDKs

Python

  • PySnyk - A Python client for the Snyk API
  • python-snyk-test - A tool that wraps pysnyk library for easier usage from command line interfaces.

JavaScript / TypeScript

Snyk API Helpers

IDE Plugins

Integration tooling

CI/CD

CircleCI

  • Circle CI Snyk Orb - This orb uses Snyk to find, fix and monitor known vulnerabilities in your app dependencies and docker image

CodeShip

GitHub Actions

  • Propagate Python Fix - Propagates fixes injected into requirements.txt into requirements.in
  • Prevent job from CircleCI - Sample gradle project with CircleCI pipeline saving the test output for snyk to pick up in github action
  • Test PNPM projects - Allows PNPM projects to be scanned in a similar manner NPM projects on Snyk.

Container Registries

Artifactory CR

Snyk CR Monitor - Monitor container images in on-premise Artifactory container registries with Snyk

Issue & Project Management

Jira

https://github.com/snyk-tech-services/jira-tickets-for-new-vulns

Monitoring & Observability

Videos

Articles

Books

Slides

Labs

Podcasts

Trainings

Community

License

License

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.

About

Awesome Snyk community contributions, champions, integrations, blogs, tools and more πŸ’œ

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published