Skip to content
Back to the index

actionaudit

github.comInfrastructure

PulseGate's liveness check found it on 13 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 28 Jun 2026. How this is checked

actionaudit is an open-source CLI tool that performs static security analysis on GitHub Actions workflows. It helps DevOps engineers and security teams identify vulnerabilities and misconfigurations in CI/CD pipelines, improving workflow security.

Inferred · not functionally tested

Open SourceMITCLI
actionaudit preview
Visit github.com

Overview

5 features

Purpose: Detecting security vulnerabilities in GitHub Actions workflows through static analysis.

Inferred · not functionally tested

Audience: devops engineers

Inferred · not functionally tested

Functions: monitoring

Inferred · not functionally tested

Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: unknown

Recorded constraints: pricing: open_source · license: MIT · platforms: CLI · deployment: cli

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: github.com. These links do not verify the individual claims.

actionaudit is an Application security & vulnerability scanning project. Inferred · not functionally tested: It focuses on detecting security vulnerabilities in GitHub Actions workflows through static analysis. Inferred · not functionally tested: actionaudit is an open-source project aimed at devops engineers. Basis unknown · not verified: actionaudit is open source under the MIT license. Basis unknown · not verified: It runs on the command line.

Behind actionaudit is Yusuf Karamuk, and it first shipped in 2026. Development happens publicly on GitHub with 49 commits in the last 90 days. Inferred · not functionally tested: Among its 5 catalogued features are static analysis, GitHub Actions scanning, and security auditing.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • Static analysis
  • GitHub Actions scanning
  • Security auditing
  • CI/CD integration
  • Open source

Topics: Inferred · not functionally tested

Tags
github-actionsstatic-analysissecurity-scannerci-cdworkflow-audit

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
github
Runs on
CLI

Trust & compliance

License
MIT
Public signals
HTTPSOpen SourceFree tierGitHubActive maintenance

Indexing history

What PulseGate has recorded for this listing

Nothing recorded for this listing in this window.

Frequently asked questions about actionaudit

What does actionaudit do?
Inferred · not functionally tested: Actionaudit focuses on detecting security vulnerabilities in GitHub Actions workflows through static analysis. It is catalogued under Application security & vulnerability scanning on PulseGate.
Who is actionaudit for?
Inferred · not functionally tested: actionaudit is an open-source project built for devops engineers.
Does actionaudit have a free plan?
Basis unknown · not verified: Yes — actionaudit is open source under the MIT license and free to use.
What platforms does actionaudit run on?
Basis unknown · not verified: actionaudit runs on the command line.
Is actionaudit still active?
PulseGate's liveness check found it on 13 Sep 2026. Its GitHub repository shows 49 commits in the last 90 days.
What projects are similar to actionaudit?
Similar projects tracked by PulseGate include actionsec, actions-warden, and gha-audit.actionsecactions-wardengha-audit
Who makes actionaudit?
actionaudit is developed by Yusuf Karamuk.
When did actionaudit launch?
actionaudit first shipped in 2026.

Similar projects

Closest matches by what these projects do