Skip to content

Enhance your workflow with extensions

Tools from the community and partners to simplify tasks and automate processes

    Security apps

    Find, fix, and prevent security vulnerabilities before they can be exploited.
    GitGuardian logo

    Secrets Security Platform - The most downloaded GitHub app lets you find and fix hardcoded API keys in code

    SonarQube Cloud logo

    Empowering developers to detect Security Vulnerabilities, Bugs, and Code Smells in pull requests and repositories

    Snyk logo

    Snyk

    App

    Find, fix (and prevent!) known vulnerabilities in your code

    Renovate logo

    Dependency Automation service by Mend.io

    Aikido Security logo

    Prevent security issues before they become threats

    Semgrep logo

    Code scanning at ludicrous speed. Find bugs and reachable dependency vulnerabilities. Enforce standards on every commit

    Socket Security logo

    Developer-first security platform that protects your code from both vulnerable and malicious dependencies

    Drata (Version Control) logo

    The Drata (Version Control) app uses read-only repo access to continuously monitor your SOC 2 compliance posture

    Mend Bolt logo

    Detect open source vulnerabilities in real time with suggested fixes for quick remediation

    Bridgecrew logo

    Find and fix security and compliance issues in Terraform, AWS Cloudformation, ARM templates, Kubernetes, and more

    Rewind Backups for GitHub logo

    Automated GitHub backups so you can recover fast, stay compliant, and never lose a line of code

    GuardRails logo

    GuardRails provides continuous security feedback for modern development teams

    Prisma Cloud Code Security logo

    A single tool for securing IaC, container images and open source software across all modern architectures and software supply

    GitProtect Github Backup & Recovery logo

    World's most tech-savvy GitHub backup, recovery, restore, migration & config management trusted by Fortune 500

    Debricked logo

    Automatically identify, fix and prevent vulnerabilities in your open source dependencies

    Veracode Workflow App logo

    Automate scans at scale by using our Veracode app to orchestrate scans across your entire portfolio

    Secureframe logo

    Streamline your security compliance

    StepSecurity Actions Security logo

    Stop CI/CD supply chain attacks

    Arnica Pipelineless Application Security logo

    Protect your source code and products. Actively mitigate secrets, SCA, licenses, IaC, SAST and low package reputation risks

    Cloudback: GitHub Backup & Restore logo

    SOC 2 Type II encrypted GitHub backups: repos, issues, PRs, LFS and more. Self-service restore, BYO storage, per-repo pricing