command
module
Version:
v0.2.0
Opens a new window with list of versions in this module.
Published: Mar 30, 2026
License: MIT
Opens a new window with license information.
Imports: 9
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
README
¶
GitHub Actions Hardener
A CLI tool that finds all GitHub Actions workflows in a folder and hardens them.
Installation
go install github.com/richard87/actions-hardify@latest
- Restrict permissions for GITHUB_TOKEN.
- Pin actions to a full length commit SHA.
- list outdated versions, suggest upgrade to newest version
- Use github api to find versions
TODO:
- BUG:
error: parsing radix-acr-cleanup/charts/radix-acr-cleanup/templates/deployment.yaml: yaml: line 5: did not find expected node content
Contributing
See CONTRIBUTING.md for guidelines.
License
This project is licensed under the MIT License.
Acknowledgements
Thanks to Step Security for the inspiration behind this CLI.
Documentation
¶
There is no documentation for this package.
Source Files
¶
Directories
¶
internal
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Click to show internal directories.
Click to hide internal directories.