github / audit-actions-workflow-runs
Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded
☆63Updated 2 weeks ago
Alternatives and similar repositories for audit-actions-workflow-runs:
Users that are interested in audit-actions-workflow-runs are comparing it to the libraries listed below
- ☆42Updated 6 months ago
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆85Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆189Updated last week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆133Updated this week
- Protect GitHub Actions with Tracee☆81Updated 3 months ago
- ☆112Updated 4 months ago
- An SBOM query language and associated utilities☆54Updated last year
- Scans your Github Actions for security issues☆69Updated 2 months ago
- ☆54Updated this week
- ☆51Updated last week
- Runtime Security Solution for your CI/CD Pipeline☆101Updated last month
- A tool to check the security settings of Github Organizations.☆71Updated last year
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆53Updated 10 months ago
- A tool to create, transform and attest VEX metadata☆134Updated last week
- A tool for preventing the installation of malicious PyPI and npm packages☆141Updated this week
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆95Updated last month
- tfclean is tool to remove applied moved block, import block, etc☆48Updated 2 weeks ago
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆39Updated 8 months ago
- ☆23Updated last month
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated last year
- Compares and analyzes GCP IAM roles.☆77Updated 2 months ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆110Updated 2 weeks ago
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆82Updated 6 months ago
- ☆56Updated 2 years ago
- Throw a tag at it and it comes back with a checksum.☆122Updated this week
- An Action to wrap creating an SBOM via REST API☆18Updated 3 weeks ago
- Enrich SBOMs with data from third party services☆171Updated last month
- Evaluate source control (GitHub) security posture☆249Updated 2 years ago
- Generate SBOMs with gh CLI☆183Updated 2 weeks ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago