StepSecurity Logo
StepSecurity
LoginStart free
step-security/graphql-inspector

step-security/graphql-inspector

๐Ÿ•ต๏ธโ€โ™€๏ธ Validate schema, get schema change notifications, validate operations, find breaking changes, look for similar types, schema coverage.

GitHubGitHub Repository

1 star

Node.js

Node Action

Maintained by StepSecurity

Score updated 4 days ago

GitHub Actions security score comparison

step-security/graphql-inspectorgraphql-hive/graphql-inspector

Score

10/10

4/10

Pinnable

YesYes

License

MIT LicenseMIT License

Maintained

Maintained by StepSecurity9 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 8

Vulnerabilities

1 existing vulnerabilities detected

130 existing vulnerabilities detected

Branch protection

Branch protection is maximal on development and all release branches

branch protection is not maximal on development and all release branches

AI analysis

Not analyzed yetNot analyzed yet

Manual code review

Upstream changes are reviewed before merging-

Secure publishing

Reproducible builds with SBOM and provenance-

Signed commits

All commits are signed-

Automated security tools

Findings from tools are triaged and fixed before each change-

Popular

Used by StepSecurity enterprise customersUsed by 14 open-source projects

Security Policy

security policy file detectedsecurity policy file not detected

Networking Behavior of step-security/graphql-inspector

This GitHub Action often makes outbound network calls to these destinations, as gathered from public workflows using the Harden-Runner GitHub Action. Harden-Runner offers network egress filtering and runtime security for both GitHub-hosted and self-hosted runners.

Popular DestinationUnknown Destination
Network DestinationOwner
api.github.comGitHubGitHub