Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

github actions "security-automation" keyword

Top 5.1% on github actions
redhat-actions/crda v1.0.0
Analyse vulnerabilities in application dependencies
5 versions - Latest release: over 2 years ago - 48 dependent repositories - 14 stars on GitHub
Top 3.7% on github actions
PaloAltoNetworks/prisma-cloud-scan v1.6.5
Scan container images for vulnerabilities and compliance issues
20 versions - Latest release: 2 months ago - 24 dependent repositories - 42 stars on GitHub
Top 2.5% on github actions
projectdiscovery/nuclei-action v2.0.1
Nuclei is a fast and customisable vulnerability scanner based on simple YAML based DSL
10 versions - Latest release: 2 months ago - 31 dependent repositories - 216 stars on GitHub
SecureStackCo/actions-sbom v0.2.0
Create a Software Bill of Materials (SBOM) with SecureStack
4 versions - Latest release: over 1 year ago - 1 dependent repositories - 19 stars on GitHub
Top 1.7% on github actions
stelligent/cfn_nag v0.8.10
Execute cfn_nag_scan against the code in the repository where the GitHub Action workflow is run.
350 versions - Latest release: almost 2 years ago - 45 dependent repositories - 1,170 stars on GitHub
Top 0.3% on github actions
securego/gosec v2.19.0 💰
Runs the gosec security checker
35 versions - Latest release: 3 months ago - 764 dependent repositories - 7,313 stars on GitHub
HCL-TECH-SOFTWARE/appscan-sast-action v1.0.4
Scan for security issues in code
5 versions - Latest release: about 1 month ago - 7 dependent repositories - 3 stars on GitHub
kahu-app/github-action v0.3.1
Dependency security check
8 versions - Latest release: 10 months ago - 0 stars on GitHub
Top 1.1% on github actions
gitleaks/gitleaks-action v2.3.4 removed
run gitleaks on push and pull-request events
36 versions - Latest release: 3 months ago - 211 dependent repositories - 243 stars on GitHub
SecureStackCo/actions-code v0.1.1
Scan your source code in real-time for vulnerable libraries & frameworks you are using. Supports ...
2 versions - Latest release: over 2 years ago - 1 dependent repositories - 18 stars on GitHub
SecureStackCo/actions-abom v0.1.5
Create an Application Bill of Materials (ABOM) with SecureStack
6 versions - Latest release: over 1 year ago - 10 stars on GitHub
Top 9.5% on github actions
y-mehta/vulnalerts v1
Customized daily Vulnerabilty Alerts straight to your Slack Inbox for Free.
1 version - Latest release: over 4 years ago - 1 dependent repositories - 13 stars on GitHub
padupe/action-content-change-validation 1.1.4
This action validates if a given directory/file has changed.
6 versions - Latest release: about 1 year ago - 1 dependent repositories - 0 stars on GitHub
HCL-TECH-SOFTWARE/appscan-dast-action v1.0.5
Scan for security issues in web applications
6 versions - Latest release: about 1 year ago - 4 dependent repositories - 1 stars on GitHub
Top 7.2% on github actions
GeekMasher/advanced-security-compliance v1.7.0
ghascompliance
13 versions - Latest release: over 1 year ago - 1 dependent repositories - 124 stars on GitHub
SecureStackCo/actions-log4j v0.1.4
Scans your application for the presence of serious vulnerabilities in Log4j
5 versions - Latest release: over 2 years ago - 1 dependent repositories - 14 stars on GitHub
albuch/sbt-dependency-check-action v1.0
Github action to execute sbt-dependency-check as part of a github workflow
1 version - Latest release: about 3 years ago - 3 dependent repositories - 1 stars on GitHub
Top 4.7% on github actions
victoriadrake/django-security-check v1.1.1 💰
Helps find and remediate common security vulnerabilities in your Django application.
10 versions - Latest release: over 2 years ago - 11 dependent repositories - 84 stars on GitHub
Top 6.7% on github actions
HCL-TECH-SOFTWARE/appscan-codesweep-action v2.1
Scan for security issues in code
3 versions - Latest release: 5 months ago - 21 dependent repositories - 17 stars on GitHub
SecureStackCo/actions-all-in-one v0.1.2 removed
Scans your app for sensitive data & secrets, vulnerable third-party libraries, cloud misconfigura...
3 versions - Latest release: about 2 years ago - 15 stars on GitHub
aufdenpunkt/python-safety-check v1.0.5
Helps to find known security vulnerabilities in your python application
6 versions - Latest release: almost 3 years ago - 23 dependent repositories - 2 stars on GitHub
Top 3.2% on github actions
tonybaloney/pycharm-security 1.29.0 💰
Scan your Python Code for security issues
51 versions - Latest release: 9 months ago - 23 dependent repositories - 315 stars on GitHub
Top 9.9% on github actions
SecureStackCo/actions-secrets v0.1.3
Scan your source code for sensitive data like API keys, passwords, server host strings, config an...
5 versions - Latest release: over 2 years ago - 13 dependent repositories - 22 stars on GitHub
magmanu/github-workflow-security-scanner v0.1.0 removed
A GitHub Action that performs static analysis on your workflows
1 version - Latest release: about 1 year ago - 0 stars on GitHub
Related Keywords
security 20 github-actions 11 devsecops 10 security-tools 9 static-analysis 7 security-audit 6 deployment 4 software-composition-analysis 4 vulnerability-scanner 4 github 3 appscan 3 action 3 sast 3 scanning 3 security-scanner 3 vulnerability-detection 3 nvd 2 github-action 2 vulnerability 2 automation-testing 2 security-testing 2 bill-of-materials 2 vulnerabilities 2 actions 2 devops 2 secret-scanning 2 cve 2 sbom 2 continuous-integration 2 deployment-automation 2 deployment-pipeline 2 secrets 2 java 1 java-vulnerability 1 java8 1 dast 1 jre 1 ghas 1 dynamic-analysis 1 code-scanning 1 hcl 1 application-security 1 validation 1 content-security-policy 1 ci-cd 1 secrets-scanner 1 secrets-scan 1 secrets-discovery-service 1 secrets-detection 1 hacktoberfest-accepted 1 python 1 web-vulnerability-scanner 1 vulnerability-scanning 1 devsecops-pipeline 1 devsecops-best-practices 1 codesweep 1 django 1 vulnerability-scanners 1 software-security 1 scala 1 sbt 1 owasp-dependencycheck 1 owasp 1 appsec 1 vulnerability-assessment 1 log4shell 1 log4js 1 log4j2 1 log4j-rce 1 log4j 1 continuous-testing 1 compliance 1 cloudformation-templates 1 cloudformation-security 1 cloudformation 1 cfn-nag 1 cfn 1 aws 1 amazon 1 sbom-tool 1 sbom-repository 1 sbom-generator 1 sbom-distribution 1 o 1 scanner 1 prisma-cloud-compute-edition 1 prisma-cloud 1 security-analysis 1 sarif-report 1 crda 1 slack-webhook 1 security-vulnerability 1 cve-search 1 cve-monitor 1 alert 1 automation 1 abom 1 secret-scanner 1 dependency-manager 1 dependency-analysis 1