step-security/likec4-actions

step-security/likec4-actions

A Github Action for various operations and automation over LikeC4 projects.

GitHubGitHub Repository

0 stars

Docker

Docker Action

Maintained by StepSecurity

Score updated 3 days ago

GitHub Actions security score comparison

step-security/likec4-actionslikec4/actions

Score

10/10

4/10

License

MIT LicenseMIT License

Maintained

Maintained by StepSecurity0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0

Vulnerabilities

0 existing vulnerabilities detected

2 existing vulnerabilities detected

Docker vulnerabilities

docker://ghcr.io/step-security/likec4-actions:v1.89.0@sha256:d789e82a73915c778c979d8f8df645e39198e89668524b352f6b071a1ee46dff

(103 existing vulnerabilities detected)

docker://ghcr.io/likec4/actions:v1.89.0

(707 existing vulnerabilities detected)

Branch protection

Branch protection is maximal on development and all release branches

branch protection is not maximal on development and all release branches

Manual code review

Upstream changes are reviewed before merging-

Secure publishing

Reproducible builds with SBOM and provenance-

Signed commits

All commits are signed-

Automated security tools

Findings from tools are triaged and fixed before each change-

Popular

Used by StepSecurity enterprise customersUsed by 20 open-source projects

Security Policy

security policy file detectedsecurity policy file not detected