July 23, 2026
Sparda Security Gate
Version updated for https://github.com/zyx77550/sparda to version v0.67.0.
This action is used across all versions by 0 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary SPARDA is a tool that compiles and statically verifies the behavior of AI-written backend services to ensure their correctness before deployment. It provides deterministic proof that routes, guards, invariant checks, and transaction boundaries do not break, without requiring API keys or cloud accounts. The action automates the process of proving the safety of AI-written backends locally and can generate proofs, badges, and coverage reports.
July 22, 2026
FHIR Validator
Version updated for https://github.com/medvertical/records-fhir-validator to version validator-v0.4.4.
This action is used across all versions by 0 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action is a TypeScript-based FHIR validator designed to automate validation of FHIR JSON resources in CI pipelines, GitHub Actions, or standalone Node.js environments. It supports multiple FHIR versions (R4, R4B, R5, R6) and provides features such as validating against StructureDefinitions, FHIRPath expressions, terminology bindings, references, slicing, extensions, Bundle rules, metadata, and custom rules without requiring a JVM or database. The action is available for both GitHub Actions pinning using floating tags and exact version pins, ensuring reproducibility and auditability.
July 22, 2026
attest-vm-image
Version updated for https://github.com/meigma/attest-vm-image to version v1.1.0.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The attest-vm-image GitHub Action inspects a finished QCOW2 VM disk image to produce auditable evidence about its contents and optionally signs that evidence. It helps verify the integrity of an artifact, ensures compliance with security policies, and provides detailed reports on vulnerabilities and contamination during the build process. The action is designed to be run after an image has been built and does not modify the input image.
July 22, 2026
Microsoft Store App Publisher
Version updated for https://github.com/microsoft/microsoft-store-apppublisher to version v1.4.
This publisher is shown as ‘verified’ by GitHub.
This action is used across all versions by 53 repositories.
Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
July 22, 2026
agent-bom Scan
Version updated for https://github.com/msaad00/agent-bom to version v0.97.2.
This action is used across all versions by 1 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The GitHub Action automates the scanning and discovery of security vulnerabilities in AI, MCP, and cloud infrastructure. It can scan from CLI, CI, Docker, or a self-hosted control plane via cloud connect or scheduled estate scans. The action generates centralized evidence and enforces runtime MCP/tool calls.
July 22, 2026
Go Proxy Cache Updater
Version updated for https://github.com/nicholas-fedor/go-proxy-pull-action to version v1.1.29.
This action is used across all versions by 10 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action automates the process of updating a proxy cache with new Go module releases based on tag creations. It supports both standard and submodule version tags and can be configured to use custom proxies or import paths, allowing users to integrate it into their workflows for continuous integration of Go modules.
July 22, 2026
Shoutrrr GitHub Notifications Action
Version updated for https://github.com/nicholas-fedor/shoutrrr-action to version v1.0.21.
This action is used across all versions by ? repositories. Action Type This is a Docker action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action automates the process of sending notifications using Shoutrrr from your GitHub Actions workflows. It allows you to easily integrate service notifications like Slack, Discord, or Telegram into your CI/CD pipelines without manually handling them. The action supports custom URLs for various services and provides an optional title parameter to customize notifications.
July 22, 2026
Cerberus AI-Agent Runtime Check
Version updated for https://github.com/Odingard/cerberus-action to version v1.0.1.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action checks Cerberus’s allow/block behavior by running two bundled, maintained fixtures through the Cerberus runtime security layer. It provides a PASS/FLAG/BLOCK verdict and an uploaded evidence artifact, ensuring CI runs without disruptions. The action is report-only by default but can be configured to fail if protection does not behave as expected.
July 22, 2026
MergeRisk
Version updated for https://github.com/One-Code-LLC/mergerisk-action to version v0.1.2.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary MergeRisk is a GitHub Action that provides a concise pull-request merge-risk report based on both deterministic scoring and optional AI insights. It helps developers identify potential risks associated with pull requests, especially those involving critical and medium path changes, without relying solely on AI. The action can be configured to fail the build if a certain risk level is reached, making it useful for maintaining code quality and security.
July 22, 2026
Postman API Onboarding
Version updated for https://github.com/postman-cs/postman-api-onboarding-action to version v2.1.2.
This action is used across all versions by 0 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The Postman API Onboarding action automates the setup and execution of a comprehensive suite of tasks to onboard an API repository, including workspace creation, OpenAPI upload, collection generation, repository artifact sync, and test execution. It provides a single entry point for handling the onboarding path, ensuring executable, standards-grounded tests are left behind in addition to assets.