Skip to content
@Checkmarx

Checkmarx

Pinned Loading

  1. kics kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent 2.5k 349

  2. 2ms 2ms Public

    Too many secrets (2MS) helps people protect their secrets on any file or on systems like CMS, chats and git

    Go 136 28

  3. capital capital Public

    A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.

    CSS 304 84

  4. ci-cd-integrations ci-cd-integrations Public

    If you are using a CI/CD platform that doesn’t yet have a dedicated Checkmarx plugin, please check this repository.

    Groovy 13 21

Repositories

Showing 10 of 59 repositories
  • ast-cli Public

    A CLI project wrapping application security testing (AST) APIs

    Checkmarx/ast-cli’s past year of commit activity
    Go 58 Apache-2.0 27 4 18 Updated Nov 25, 2025
  • kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Checkmarx/kics’s past year of commit activity
    Open Policy Agent 2,517 Apache-2.0 349 139 156 Updated Nov 25, 2025
  • Checkmarx/gen-ai-wrapper’s past year of commit activity
    Go 0 Apache-2.0 0 1 7 Updated Nov 25, 2025
  • ast-jetbrains-plugin Public

    The CxAST JetBrains plugin enables you to import results from a CxAST scan directly into your IDE.

    Checkmarx/ast-jetbrains-plugin’s past year of commit activity
    Java 3 Apache-2.0 3 0 10 Updated Nov 25, 2025
  • ast-cli-java-wrapper Public

    Java SDK to access AST

    Checkmarx/ast-cli-java-wrapper’s past year of commit activity
    Java 1 Apache-2.0 1 1 18 Updated Nov 25, 2025
  • ast-cli-javascript-wrapper-runtime-cli Public Forked from JayPNanduri/ast-cli-javascript-wrapper-jay

    Java Script Wrapper that uses the CLI by runtime Download

    Checkmarx/ast-cli-javascript-wrapper-runtime-cli’s past year of commit activity
    TypeScript 1 9 1 7 Updated Nov 24, 2025
  • Checkmarx/containers-syft-packages-extractor’s past year of commit activity
    Go 0 1 0 3 Updated Nov 24, 2025
  • kics-github-action Public

    GitHub actions of KICS scan - Keeping Infrastructure as Code Secure

    Checkmarx/kics-github-action’s past year of commit activity
    JavaScript 52 GPL-3.0 40 14 5 Updated Nov 24, 2025
  • ast-azure-plugin Public

    The CxAST Azure DevOps plugin enables you to trigger SAST, SCA, and KICS scans directly from an Azure DevOps pipeline.

    Checkmarx/ast-azure-plugin’s past year of commit activity
    TypeScript 6 Apache-2.0 5 6 17 Updated Nov 24, 2025
  • Checkmarx/ast-cli-javascript-wrapper’s past year of commit activity
    TypeScript 1 0 0 25 Updated Nov 21, 2025

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…