Security
Find, fix, and prevent security vulnerabilities before they can be exploited.
555 results filtered by Security ×
Apps
BackHub Backups by Rewind
By backhub
Backup your GitHub repos and metadata automatically. Get daily backups that can be restored in seconds – AWS storage available
RecommendedGuardRails
By guardrailsio
GuardRails provides continuous security feedback for modern development teams
2k installsSemgrep
By returntocorp
Code scanning at ludicrous speed. Find bugs, apply guardrails across your repos, and get feedback in PRs, Slack, or email
1.7k installsGitProtect.io Backup
By xoperosoftware
Automatic, daily repo and metadata backup - no maintenance needed: fast restore, DR, AWS, and S3 cloud storage support
1.1k installsCloudback Backup
By cloudback
Backups your GitHub repositories, fast and secure
348 installsDebricked
By debricked
Automatically identify, fix and prevent vulnerabilities in your open source dependencies
818 installsNightfall DLP: GitHub Secrets Scanner
By nightfallai
Nightfall automatically detects PII, credentials, secrets, and more in GitHub repos via machine learning. Free tier
437 installsScantist SCA
By scantist
Proactive vulnerability management and license compliance for your third-party components
473 installsNeuraLegion
By NeuraLegion
NeuraLegion is a powerful dynamic App and API security testing (DAST) platform that security teams trust and developers love
331 installsGitGuardian
By GitGuardian
GitGuardian provides real time secrets detection and security policies enforcement across all your repositories
140k installsActions
Psalm – Security Scanner for PHP
By psalm
Find security vulnerabilities in your PHP codebase with Psalm, a free and open-source tool created by Vimeo
14 starsCodeGuru Reviewer
By aws-actions
AWS CodeGuru Reviewer Action
18 starsExport Fortify vulnerability data
By fortify
Export Fortify vulnerability data to various targets
SonarCloud Scan
By SonarSource
Scan your code with SonarCloud to detect bugs, vulnerabilities and code smells in more than 25 programming languages.
322 starsGP Security Scan
By whitesource
Scan packages and Docker images uploaded to GitHub Packages
53 starsGradle Wrapper Validation
By gradle
Validates Gradle Wrapper JAR Files
131 starsSnyk
By snyk
Check your applications for vulnerabilties using Snyk
148 starsSysdig Secure Inline Scan
By sysdiglabs
Perform image analysis on locally built container image and post the result of the analysis to Sysdig Secure
18 starsKubernetes Security Config Watch
By sysdiglabs
Run security privilege comparison against Kubernetes workloads when a PR is open
19 starsSysdig CIS Dockerfile Benchmark
By sysdiglabs
Run CIS Dockerfile benchmark against dockerfiles in repository (CIS 4.1, 4.2, 4.3, 4.6, 4.7, 4.9, 4.10)
8 starsList your tool on GitHub Marketplace
- Read the documentation
- Learn how you can build tools to extend and improve developers' workflows.
- Submit your tool for review
- Share your app or GitHub Action with millions of developers.