Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

github actions "supply-chain" keyword

Top 0.6% on github actions
ossf/scorecard-action v2.3.3
Run OSSF Scorecard checks and output results in SARIF format
29 versions - Latest release: 5 days ago - 6,465 dependent repositories - 227 stars on GitHub
Top 4.6% on github actions
sigstore/gh-action-sigstore-python v2.1.1
Use sigstore-python to sign Python packages
26 versions - Latest release: 5 months ago - 143 dependent repositories - 32 stars on GitHub
Top 3.8% on github actions
pypa/gh-action-pip-audit v1.0.8 💰
Use pip-audit to scan Python dependencies for known vulnerabilities
15 versions - Latest release: 12 months ago - 131 dependent repositories - 51 stars on GitHub
Duffney/setup-notation v1.0.0
Setup Notation CLI on GitHub Actions runners
5 versions - Latest release: over 1 year ago - 1 dependent repositories - 3 stars on GitHub