Skip to content
Menu

Menu

Security

Find, fix, and prevent security vulnerabilities before they can be exploited.

206 results filtered by Security ×

whitesource

GP Security Scan

By whitesource

Scan packages and Docker images uploaded to GitHub Packages

check-circle

Anchore Container Scan

By anchore

Scan docker containers with Anchore for vulnerabilities and policy violations

snyk

Snyk

By snyk

Check your Node application for vulnerabilties using Snyk

sonarsource

SonarCloud Scan

By SonarSource

Scan your code with SonarCloud to detect bugs, vulnerabilities and code smells in more than 25 programming languages.

WhiteSource Bolt

Detect open source vulnerabilities in real time with suggested fixes for quick remediation

hashicorp

Vault Secrets

By hashicorp

A Github Action that allows you to consume HashiCorp Vault™ secrets as secure environment variables

BackHub

Reliable GitHub repository backup, set up in minutes

Dependabot Preview

Automated dependency updates for Ruby, JavaScript, Python, Go, PHP, Elixir, Rust, Java and .NET

LGTM

Find and prevent zero-days and other critical bugs, with customizable alerts and automated code review

GuardRails

GuardRails provides continuous security feedback for modern development teams

check-square

DevSkim

By microsoft

Run DevSkim Code Analysis

42crunch

42Crunch REST API Static Security Testing

By 42Crunch

The REST API Static Security Testing action adds an automatic static application security testing (SAST) to your workflows

Sonatype DepShield

Monitor your open source components for security vulnerabilities - goodbye muda, hello kaizen

Snyk

Find, fix (and prevent!) known vulnerabilities in your code

blackducksoftware

Synopsys Detect

By blackducksoftware

Add SAST and SCA scanning to your GitHub repositories with Synopsys Coverity on Polaris and Black Duck

Renovate

Keep dependencies up-to-date with automated Pull Requests

google

Secrets Sync Action

By google

Copies secrets from the action's environment to many other repos

zap

OWASP ZAP Baseline Scan

By zaproxy

Scans the web application with the OWASP ZAP Baseline Scan

zap

OWASP ZAP Full Scan

By zaproxy

Scans the web application with the OWASP ZAP Full Scan

check-square

AppInspector

By microsoft

Run ApplicationInspector Static Analysis

Next

List your tool on GitHub Marketplace

Read the documentation
Learn how you can build tools to extend and improve developers' workflows.
Submit your tool for review
Share your app or GitHub Action with millions of developers.
You can’t perform that action at this time.