Skip to content
Menu

Menu

Actions

An entirely new way to automate your development workflow.

286 results filtered by Security × Actions ×

sysdiglabs image/svg+xml sysdig_Vert_Color_Logo_RGB_MED

Sysdig Secure Inline Scan

By sysdiglabs

Perform image analysis on locally built container image and post the result of the analysis to Sysdig Secure

google

Secrets Sync Action

By google

Copies secrets from the action's environment to many other repos

whitesource

GP Security Scan

By whitesource

Scan packages and Docker images uploaded to GitHub Packages

aquasecurity

Aqua Security Trivy

By aquasecurity

Scans container images for vulnerabilities with Trivy

shield

Checkov Github Action

By bridgecrewio

Run Checkov against Terraform/CloudFormation infrastructure code, as a pre-packaged Github Action

fortifyimage/svg+xml

Fortify ScanCentral Scan

By fortify

Build secure software fast with Fortify SAST scans

veracode

Veracode Upload And Scan

By veracode

Upload files to veracode and start a static scan

fortifyimage/svg+xml

Fortify on Demand Scan

By fortify

Build secure software fast with Fortify SAST scans

snyk

Snyk

By snyk

Check your applications for vulnerabilties using Snyk

sysdiglabs image/svg+xml sysdig_Vert_Color_Logo_RGB_MED

Sysdig CIS Dockerfile Benchmark

By sysdiglabs

Run CIS Dockerfile benchmark against dockerfiles in repository (CIS 4.1, 4.2, 4.3, 4.6, 4.7, 4.9, 4.10)

hashicorp

Vault Secrets

By hashicorp

A Github Action that allows you to consume HashiCorp Vault™ secrets as secure environment variables

fortifyimage/svg+xml

Generate SARIF from Fortify on Demand

By fortify

Generate SARIF file from Fortify on Demand SAST results for import to GitHub

datadog

Datadog Vulnerability Analysis with Snyk

By DataDog

Upload the dependency graph to Datadog

sonarsource

SonarCloud Scan

By SonarSource

Scan your code with SonarCloud to detect bugs, vulnerabilities and code smells in more than 25 programming languages.

stackhawk

StackHawk HawkScan Action

By stackhawk

Find security bugs in your application with HawkScan DAST

search

InferSharp

By microsoft

Scalable and interprocedural code analyzer for detecting memory safety issues such as null pointer derefs and resource leaks

shield

Add Secure Code Warrior contextual training to SARIF

By SecureCodeWarrior

Add contextual application security training to SARIF files, providing links to secure coding exercises and explainer videos

checkmarx-ts

Checkmarx CxFlow Action

By checkmarx-ts

Simplify Checkmarx Scanning of source code along with Result consumption leveraging Checkmarx CxFlow solution

42crunch

42Crunch REST API Static Security Testing

By 42Crunch

The REST API Static Security Testing action adds an automatic static application security testing (SAST) to your workflows

anchore

Anchore Container Scan

By anchore

Scan docker containers with Grype for vulnerabilities

Next

List your tool on GitHub Marketplace

Read the documentation
Learn how you can build tools to extend and improve developers' workflows.
Submit your tool for review
Share your app or GitHub Action with millions of developers.