A GitHub Action for detecting vulnerable dependencies and invalid licenses in your PRs
☆796Mar 20, 2026Updated this week
Alternatives and similar repositories for dependency-review-action
Users that are interested in dependency-review-action are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆15Feb 12, 2026Updated last month
- Official GitHub Action for OpenSSF Scorecard.☆366Updated this week
- Automate adding issues and pull requests to GitHub projects☆680Updated this week
- Action to detect if a secret is initially detected in a PR commit☆11Jun 19, 2023Updated 2 years ago
- Actions for running CodeQL analysis☆1,508Updated this week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆116Aug 8, 2025Updated 7 months ago
- An action for automatically labelling pull requests☆2,406Updated this week
- Write workflows scripting the GitHub API in JavaScript☆4,908Mar 9, 2026Updated 2 weeks ago
- GitHub token permissions Monitor and Advisor actions☆356Jan 31, 2026Updated last month
- Automatically set the CodeQL matrix job using the languages in your repository.☆18Jan 8, 2026Updated 2 months ago
- Cache dependencies and build outputs in GitHub Actions☆5,311Updated this week
- Action for generating attestations for workflow artifacts☆86Updated this week
- Static checker for GitHub Actions workflow files☆3,709Mar 15, 2026Updated last week
- Expand threaded messages without "Also sent to the channel"☆17Mar 12, 2025Updated last year
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- ☆843Mar 16, 2026Updated last week
- Action to detect if a secret is initially detected in a pull request☆20Mar 9, 2026Updated 2 weeks ago
- GitHub Action for creating a GitHub App Installation Access Token☆755Updated this week
- Calculates dependencies for a Go build-target and submits the list to the Dependency Submission API☆73Feb 28, 2026Updated 3 weeks ago
- GitHub Advance Security Compliance Action☆134Dec 14, 2022Updated 3 years ago
- GitHub Action for filtering Code Scanning alerts by path and id☆37Mar 11, 2026Updated 2 weeks ago
- ☆44Mar 16, 2026Updated last week
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Jun 17, 2024Updated last year
- GitHub Advanced Security Policy as Code☆96Mar 6, 2026Updated 2 weeks ago
- NordVPN Threat Protection Pro™ • AdTake your cybersecurity to the next level. Block phishing, malware, trackers, and ads. Lightweight app that works with all browsers.
- Gather metrics on issues/prs/discussions such as time to first response, count of issues opened, closed, etc.☆527Updated this week
- Libs and tools used to build all *-version tools for GitHub Actions☆30Mar 2, 2026Updated 3 weeks ago
- Orchestrate GitHub Actions Security☆311Mar 18, 2026Updated last week
- GitHub Action for creating software bill of materials using Syft.☆227Mar 18, 2026Updated last week
- ☆83Apr 26, 2024Updated last year
- Eslint plugin for https://github.com/jest-community/jest-extended☆21Mar 15, 2026Updated last week
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆999Mar 18, 2026Updated last week
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Feb 1, 2025Updated last year
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆221Updated this week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- ☆58Updated this week
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆84Apr 8, 2024Updated last year
- automated releases based on conventional commits☆2,328Feb 20, 2026Updated last month
- Marks issues and pull requests that have not had recent interaction☆1,654Updated this week
- GitHub Action to publish artifacts to GitHub Pages for deployments☆875Oct 14, 2024Updated last year
- Reusable workflows for developing actions☆77Mar 2, 2026Updated 3 weeks ago
- Action for checking out a repo☆7,666Feb 3, 2026Updated last month