Skip to content

Enhance your workflow with extensions

Tools from the community and partners to simplify tasks and automate processes

    Security apps

    Find, fix, and prevent security vulnerabilities before they can be exploited.

    GitGuardian logo

    Secrets Security Platform - The most downloaded GitHub app lets you find and fix hardcoded API keys in code

    Snyk logo

    Snyk

    App

    Find, fix (and prevent!) known vulnerabilities in your code

    SonarQube Cloud logo

    Empowering developers to detect Security Vulnerabilities, Bugs, and Code Smells in pull requests and repositories

    Renovate logo

    Dependency Automation service by Mend.io

    Semgrep logo

    Code scanning at ludicrous speed. Find bugs and reachable dependency vulnerabilities. Enforce standards on every commit

    Aikido Security logo

    Prevent security issues before they become threats

    Socket Security logo

    Protect your app from malicious open source dependencies

    Mend Bolt logo

    Detect open source vulnerabilities in real time with suggested fixes for quick remediation

    Bridgecrew logo

    Find and fix security and compliance issues in Terraform, AWS Cloudformation, ARM templates, Kubernetes, and more

    Drata (Version Control) logo

    The Drata (Version Control) app uses read-only repo access to continuously monitor your SOC 2 compliance posture

    Rewind Backups for GitHub logo

    Automatic daily backups of your GitHub repos and metadata with on-demand restores to protect your business

    GuardRails logo

    GuardRails provides continuous security feedback for modern development teams

    Prisma Cloud Code Security logo

    A single tool for securing IaC, container images and open source software across all modern architectures and software supply

    Debricked logo

    Automatically identify, fix and prevent vulnerabilities in your open source dependencies

    Pixeebot | Automated code fixes. logo

    Your Automated Product Security Engineer

    GitProtect.io FREE Backup for GitHub logo

    Automatic, daily repo and metadata backup - no maintenance needed: fast restore, DR, AWS, and S3 cloud storage support

    Secureframe logo

    Streamline your security compliance

    Cloudback: GitHub Backup & Restore logo

    Backup repositories, metadata and LFS into AWS, Azure, OneDrive, GCP. SOC2 Type II compliant. Pay per repositories, not seats

    Arnica Pipelineless Application Security logo

    Protect your source code and products. Actively mitigate secrets, SCA, licenses, IaC, SAST and low package reputation risks

    HCP Vault Secrets logo

    Centralize secrets and access them when and where you need across development, Github Actions, and production environments