An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

github actions "supply-chain-security" keyword

Top 2.7% on github actions
gensecaihq/Shai-Hulud-2.0-Detector v2.1.0
Detect Shai-Hulud 2.0 npm supply chain attack - 790+ packages, SHA256 hashing, runner & backdoor ...
8 versions - Latest release: 2 months ago
Top 1.3% on github actions
step-security/harden-runner v2.18.0
Harden-Runner provides runtime security for GitHub-hosted and self-hosted runners
64 versions - Latest release: 12 days ago - 497 dependent repositories - 1,096 stars on GitHub
Top 6.6% on github actions
Legit-Labs/legitify v1.0.11
Legitify GitHub Action
34 versions - Latest release: almost 2 years ago - 1 dependent repositories - 815 stars on GitHub
docker/scout-action v1.18.2
List vulnerabilities in images; find better base images and upload an image SBOM to Docker Scout
49 versions - Latest release: 9 months ago - 122 stars on GitHub
CycodeLabs/cimon-action v0.9.4
Runtime Security Solution for your CI/CD Pipeline
26 versions - Latest release: over 2 years ago - 1 dependent repositories - 108 stars on GitHub
stacklok/frizbee-action v0.0.5
Automatically correct GitHub Actions and container image tags to digests
5 versions - Latest release: 12 months ago - 5 stars on GitHub
listendev/action v0.19.0 removed
Proactive Security Monitoring Inside GitHub Actions.
51 versions - Latest release: 12 months ago - 3 dependent repositories - 15 stars on GitHub
Top 8.9% on github actions
ossillate-inc/packj-github-action v0.0.12-beta
Use Packj to avoid malicious and other "risky" open-source software dependencies
13 versions - Latest release: over 2 years ago - 23 dependent repositories - 10 stars on GitHub
xygeni/xygeni-action v3.2.0
Runs Xygeni Scanner
6 versions - Latest release: almost 3 years ago - 1 dependent repositories - 5 stars on GitHub
Checkmarx/chainalert-github-action v1
Action for opting in to ChainAlert service
1 version - Latest release: over 4 years ago - 41 stars on GitHub