June 1, 2026
Rearm Build And Submit Release metadata action
Version updated for https://github.com/relizaio/rearm-docker-action to version 1.13.0.
This action is used across all versions by 6 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The rearm-docker-action GitHub Action automates the process of building Docker images, pushing them to a container registry, and submitting release metadata to the ReARM platform. It streamlines CI/CD workflows by integrating Docker image management and metadata tracking, while also supporting additional features like SBOM generation, artifact signing, and CodeQL analysis for enhanced security and compliance. This action is designed to simplify release management and improve traceability in software delivery pipelines.
June 1, 2026
ReARM Version and Publish Helm Chart Action
Version updated for https://github.com/relizaio/rearm-helm-action to version 1.10.0.
This action is used across all versions by 3 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The rearm-helm-action is a GitHub Action designed to automate the versioning, packaging, and publishing of Helm charts to OCI-compliant registries, AWS ECR, or ChartMuseum, while also integrating with ReARM to submit release metadata. It simplifies the process of maintaining and releasing Helm charts by updating the chart version, committing changes, and handling artifact publication and metadata tracking. Additional capabilities include support for SBOM generation, signature verification, and integration with SecureSBOM for enhanced security.
June 1, 2026
Docker Compose Cache
Version updated for https://github.com/seijikohara/docker-compose-cache-action to version v1.8.7.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The Docker Compose Cache Action is a GitHub Action designed to optimize CI/CD workflows by caching Docker images used in Docker Compose files. It automates the process of parsing Compose files, caching images as tarballs, verifying their freshness with digest checks, and selectively pulling only updated images, thereby reducing redundant downloads and speeding up workflow execution. Key capabilities include support for multiple Compose files, granular image caching, and prevention of stale cache issues.
June 1, 2026
Soundcheck Security Review
Version updated for https://github.com/thejefflarson/soundcheck-action to version v1.0.17.
This action is used across all versions by 11 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The Soundcheck Security Review GitHub Action automates security checks on your repository by conducting a severity-ranked analysis of code changes for every pull request or scheduled workflow. It identifies vulnerabilities against standards like OWASP Web Top 10, API Security, and LLM Top 10, and optionally applies fixes directly to the codebase. Key capabilities include commenting detailed findings on pull requests, committing autofixes, and gating merges based on critical or high-severity issues.
June 1, 2026
EcoTrace Carbon Gate
Version updated for https://github.com/Zwony/ecotrace to version v1.2.0.
This action is used across all versions by 0 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary EcoTrace is a Python library designed to provide real-time, hardware-level monitoring of energy consumption and carbon emissions for Python applications, with a focus on precision and ease of use. It automates the measurement and reporting of carbon footprints, particularly for machine learning workflows, by offering features like continuous sampling, function-level tracking, and regional carbon intensity analysis without requiring complex configurations. Key capabilities include high-frequency hardware monitoring, AI-specific tracking tools, zero-code profiling, and automated report generation for audit-ready insights.