Skip to content

Actions

An entirely new way to automate your development workflow.

159 results for "sort:top-30-desc updated:>2024-02-28" filtered by Security Actions Verified Creator

Actions

azure

Trusted Signing

By Azure

Creator verified by GitHub

Sign your files with Trusted Signing

18 stars
actions

Attest Build Provenance

By actions

Creator verified by GitHub

Generate provenance attestations for build artifacts

62 stars
actions

Attest SBOM

By actions

Creator verified by GitHub

Generate SBOM attestations for build artifacts

8 stars
soos-io

SOOS SAST

By soos-io

Creator verified by GitHub

The SOOS GitHub Action to perform SAST Analysis

fortifyimage/svg+xml

Fortify AST Scan

By fortify

Creator verified by GitHub

Find and fix vulnerabilities to build secure software with Fortify Code Security

7 stars
veracode

Veracode Container/IaC/Secrets Scanning GitHub Action

By veracode

Creator verified by GitHub

Veracode Container/IaC/Secrets Scanning GitHub Action

actions

Create GitHub App Token

By actions

Creator verified by GitHub

GitHub Action for creating a GitHub App installation access token

263 stars
play

golang-govulncheck-action

By golang

Creator verified by GitHub

Run govulncheck

82 stars
docker

Docker Scout

By docker

Creator verified by GitHub

List vulnerabilities in images; find better base images and upload an image SBOM to Docker Scout

64 stars
aikidosec

Aikido Security Github Action

By AikidoSec

Creator verified by GitHub

This action triggers a scan in Aikido. It will throw an error if any new critical issues were found

13 stars
teleport-actions

Teleport Auth

By teleport-actions

Creator verified by GitHub

Authenticates your workflow so it can use Teleport s tctl and tsh with the magic of Machine ID

7 stars
play

Set CodeQL Languages

By advanced-security

Creator verified by GitHub

Auto-populate the Actions matrix definition to include languages for CodeQL

8 stars
sonarsource

SonarCloud Scan for C and C++

By SonarSource

Creator verified by GitHub

Scan your C and C++ code with SonarCloud to detect bugs, vulnerabilities and code smells

5 stars
veracode

Veracode Pipeline-Scan

By veracode

Creator verified by GitHub

Upload files to veracode and start a static pipeline-scan

3 stars
azure

Azure Code Signing

By Azure

Creator verified by GitHub

Sign your files with Azure Code Signing

20 stars
arrow-left

Bandit Scan

By shundor

Creator verified by GitHub

Bandit Scan

8 stars
feather

Maven Dependency Tree Dependency Submission

By advanced-security

Creator verified by GitHub

A GitHub Action for Maven project to submit a complete dependency tree to populate the GitHub Dependency Graph

44 stars
play

gh-action-sigstore-python

By sigstore

Creator verified by GitHub

Use sigstore-python to sign Python packages

42 stars
package

Sbt Dependency Submission

By scalacenter

Creator verified by GitHub

Submits the dependency graph of an sbt build to the Github Submission API

57 stars
play

gh-action-pip-audit

By pypa

Creator verified by GitHub

Use pip-audit to scan Python dependencies for known vulnerabilities

63 stars

List your tool on GitHub Marketplace

Read the documentation

Submit your tool for review