Actions
An entirely new way to automate your development workflow.
286 results filtered by Security × Actions ×
Sysdig Secure Inline Scan
By sysdiglabs
Perform image analysis on locally built container image and post the result of the analysis to Sysdig Secure
Secrets Sync Action
By google
Copies secrets from the action's environment to many other repos
GP Security Scan
By whitesource
Scan packages and Docker images uploaded to GitHub Packages
Aqua Security Trivy
By aquasecurity
Scans container images for vulnerabilities with Trivy
Checkov Github Action
By bridgecrewio
Run Checkov against Terraform/CloudFormation infrastructure code, as a pre-packaged Github Action
Fortify ScanCentral Scan
By fortify
Build secure software fast with Fortify SAST scans
Veracode Upload And Scan
By veracode
Upload files to veracode and start a static scan
Fortify on Demand Scan
By fortify
Build secure software fast with Fortify SAST scans
Snyk
By snyk
Check your applications for vulnerabilties using Snyk
Sysdig CIS Dockerfile Benchmark
By sysdiglabs
Run CIS Dockerfile benchmark against dockerfiles in repository (CIS 4.1, 4.2, 4.3, 4.6, 4.7, 4.9, 4.10)
Vault Secrets
By hashicorp
A Github Action that allows you to consume HashiCorp Vault™ secrets as secure environment variables
Generate SARIF from Fortify on Demand
By fortify
Generate SARIF file from Fortify on Demand SAST results for import to GitHub
Datadog Vulnerability Analysis with Snyk
By DataDog
Upload the dependency graph to Datadog
SonarCloud Scan
By SonarSource
Scan your code with SonarCloud to detect bugs, vulnerabilities and code smells in more than 25 programming languages.
StackHawk HawkScan Action
By stackhawk
Find security bugs in your application with HawkScan DAST
InferSharp
By microsoft
Scalable and interprocedural code analyzer for detecting memory safety issues such as null pointer derefs and resource leaks
Add Secure Code Warrior contextual training to SARIF
By SecureCodeWarrior
Add contextual application security training to SARIF files, providing links to secure coding exercises and explainer videos
Checkmarx CxFlow Action
By checkmarx-ts
Simplify Checkmarx Scanning of source code along with Result consumption leveraging Checkmarx CxFlow solution
42Crunch REST API Static Security Testing
By 42Crunch
The REST API Static Security Testing action adds an automatic static application security testing (SAST) to your workflows
Anchore Container Scan
By anchore
Scan docker containers with Grype for vulnerabilities
List your tool on GitHub Marketplace
- Read the documentation
- Learn how you can build tools to extend and improve developers' workflows.
- Submit your tool for review
- Share your app or GitHub Action with millions of developers.