github-actions-audit
Audits GitHub Actions workflow files for supply-chain risks like script injection, leaked tokens, unpinned actions, and broad permissions.
- Score
- Unranked
- Evidence
- No signals yet
- Last commit
- as last read from GitHub; most reads are from 2 Sep 2026 or later
- Listed
Install
No one-command install. Set it up from its source.
Alternatives · MCPs
- praetorian-mcphammer35 stars · 2 forks76.838
- github-security-mcp14 stars · 5 forks72.926
- acacian-aegis15 stars · 4 forks72.722
What it is
Audits GitHub Actions workflow files for supply-chain risks like script injection, leaked tokens, unpinned actions, and broad permissions.
When to use it
Audits GitHub Actions workflow files for supply-chain risks like script injection, leaked tokens, unpinned actions, and broad permissions.
How to install / invoke
See Glama for the install config.
Notes
Listed from the Glama MCP registry.