github / audit-actions-workflow-runsLinks
Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded
☆68Updated last month
Alternatives and similar repositories for audit-actions-workflow-runs
Users that are interested in audit-actions-workflow-runs are comparing it to the libraries listed below
Sorting:
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆192Updated this week
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆86Updated this week
- ☆42Updated 7 months ago
- Protect GitHub Actions with Tracee☆81Updated 3 months ago
- An SBOM query language and associated utilities☆54Updated last year
- Scans your Github Actions for security issues☆73Updated 3 weeks ago
- ☆52Updated this week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆135Updated this week
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆55Updated 11 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆110Updated 2 weeks ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- Runtime Security Solution for your CI/CD Pipeline☆104Updated 2 months ago
- Run Falco in a GitHub Actions to detect suspicious behavior in your CI/CD☆36Updated 2 months ago
- ☆54Updated 2 weeks ago
- A tool for preventing the installation of malicious PyPI and npm packages☆145Updated this week
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆115Updated 2 weeks ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- An IAM Simulator that outputs detailed explains of how a request was evaluated.☆78Updated last week
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆39Updated 9 months ago
- ☆112Updated last week
- (d)ocker(f)ile (c)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆64Updated this week
- Generate SBOMs with gh CLI☆185Updated last month
- Enrich SBOMs with data from third party services☆173Updated 2 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆95Updated 5 months ago
- Github Action to automatically update digests for container images.☆60Updated 2 weeks ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆156Updated 9 months ago
- tfclean is tool to remove applied moved block, import block, etc☆48Updated 2 weeks ago
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆55Updated 4 months ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- Octoscan is a static vulnerability scanner for GitHub action workflows.☆210Updated last month