An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

github actions "supply-chain-security" keyword

Top 1.3% on github actions
step-security/harden-runner v2.15.1
Harden-Runner provides runtime security for GitHub-hosted and self-hosted runners
60 versions - Latest release: 5 days ago - 497 dependent repositories - 873 stars on GitHub
Top 2.7% on github actions
gensecaihq/Shai-Hulud-2.0-Detector v2.0.1
Detect Shai-Hulud 2.0 npm supply chain attack - 790+ packages, SHA256 hashing, runner & backdoor ...
7 versions - Latest release: 3 months ago
xygeni/xygeni-action v3.2.0
Runs Xygeni Scanner
6 versions - Latest release: almost 3 years ago - 1 dependent repositories - 5 stars on GitHub
Checkmarx/chainalert-github-action v1
Action for opting in to ChainAlert service
1 version - Latest release: about 4 years ago - 41 stars on GitHub
stacklok/frizbee-action v0.0.5
Automatically correct GitHub Actions and container image tags to digests
5 versions - Latest release: 10 months ago - 5 stars on GitHub
Top 8.9% on github actions
ossillate-inc/packj-github-action v0.0.12-beta
Use Packj to avoid malicious and other "risky" open-source software dependencies
13 versions - Latest release: over 2 years ago - 23 dependent repositories - 10 stars on GitHub
Top 6.6% on github actions
Legit-Labs/legitify v1.0.11
Legitify GitHub Action
34 versions - Latest release: over 1 year ago - 1 dependent repositories - 815 stars on GitHub
listendev/action v0.19.0
Proactive Security Monitoring Inside GitHub Actions.
51 versions - Latest release: 10 months ago - 3 dependent repositories - 15 stars on GitHub
CycodeLabs/cimon-action v0.9.4
Runtime Security Solution for your CI/CD Pipeline
26 versions - Latest release: over 2 years ago - 1 dependent repositories - 108 stars on GitHub
docker/scout-action v1.18.2
List vulnerabilities in images; find better base images and upload an image SBOM to Docker Scout
49 versions - Latest release: 8 months ago - 122 stars on GitHub