August 22, 2026
trustmcp scan
Version updated for https://github.com/v0idw4lker/trustmcp to version v0.2.0.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action, trustmcp, is a security scanner designed to identify vulnerabilities in MCP (Model Context Protocol) servers, primarily AI agents such as Claude and ChatGPT. It provides a native SARIF report for integration into the GitHub Security tab, offering both static scans of source code and dynamic analysis of running servers. The action can scan static code or both static and live dynamic content from running servers, with options to customize scanning modes, targets, and output formats.
August 22, 2026
Vaara Policy Check
Version updated for https://github.com/vaaraio/vaara to version v1.75.0.
This action is used across all versions by 1 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Vaara is an autonomous action auditing tool designed to provide verifiable receipts for every autonomous action. It helps in automating tasks such as fund transfers, file writing, and calling tools while ensuring that these actions are risk-scored and authorized against predefined policies. Vaara provides features like a CLI, macOS menu-bar app, TypeScript client, and a Python interface to manage and verify autonomous actions.
August 22, 2026
Tribblix-vm
Version updated for https://github.com/vmactions/tribblix-vm to version v1.0.4.
This action is used across all versions by 28 repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action automates running continuous integration tests on Tribblix, a BSD-based operating system. It supports various releases and architectures, including x86_64, and allows users to run arbitrary commands in the VM environment. Users can pass environment variables and execute shell scripts to perform specific tasks during the CI process.
August 22, 2026
Npx Confusion Guard
Version updated for https://github.com/yourllmstxt/npx-confusion-guard to version v1.0.0.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action, npx-confusion-guard, prevents attackers from claiming public npm names that match the binaries your packages export. It scans package.json files in a workspace and checks whether corresponding unscoped public npm names are claimed. The action reports potential issues via SARIF findings and can optionally reserve unclaimed binaries for manual reservation.
August 22, 2026
SF Package Combiner
Version updated for https://github.com/mcarvin8/sf-package-combiner to version v4.1.0.
This action is used across all versions by 0 repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action combines multiple Salesforce package.xml manifests into one, simplifying CI/CD processes by automating the merging of different package configurations. It supports combining files and directories containing package.xml, making it suitable for integrating with sfdx-git-delta output or manual lists. The action provides flexibility through inputs like API version and dry run options, enhancing its utility for various deployment scenarios in Salesforce development pipelines.
August 22, 2026
SF Package List
Version updated for https://github.com/mcarvin8/sf-package-list to version v3.1.0.
This action is used across all versions by 0 repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The GitHub Action sf-package-list allows users to convert Salesforce package.xml manifests to and from a human-readable list format. It provides two modes: converting from a package.xml file to a text-based list or vice versa, making it easier for non-technical team members to manage metadata in Salesforce projects. The action is available as both a native GitHub Action and a plugin for the Salesforce CLI, offering flexibility in where and how users can perform these conversions.
August 22, 2026
Speccy API review
Version updated for https://github.com/mcclowes/speccy to version speccy-cli@0.12.0.
This action is used across all versions by 0 repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Speccy is an OpenAPI renderer that provides a consistent UI across different platforms and integrates with Docusaurus. It uses a shared React core to render OpenAPI specifications, which solves problems related to maintaining consistent rendering and supports various features such as multi-document references, JSON Schema 2020-12 support, and integration with Docusaurus.
August 22, 2026
Setup Fortran Compilers
Version updated for https://github.com/minhqdao/setup-fortran to version v1.10.0.
This action is used across all versions by 4 repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The setup-fortran GitHub Action automates the setup of Fortran compiler toolchains across Linux, macOS, and Windows platforms. It supports various compilers including GNU, Intel, LLVM, NVIDIA, AMD, Arm, and LFortran, allowing users to easily integrate Fortran development into their workflows using GitHub Actions. The action provides options to specify the compiler version, installation environment (Windows), disk cleanup, and environment variable export settings.
August 22, 2026
Setup audible-cli
Version updated for https://github.com/mkb79/setup-audible-cli to version v1.0.1.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The setup-audible-cli GitHub Action installs and configures the audible-cli tool for use in GitHub Actions workflows. It allows users to authenticate with Audible using ADP tokens and device private keys, enabling them to run authenticated commands like listing libraries or exporting metadata. The action can also be used to install specific versions of audible-cli from PyPI or a different Git repository branch/tag, ensuring flexibility for testing unreleased features.
August 22, 2026
Needlepath Select
Version updated for https://github.com/nextmoca/needlepath-select-action to version v1.0.0.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 24.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action, Needlepath Select, optimizes AI workflows by preparing smaller, more relevant contexts for downstream tasks without altering original content or calling models. It uses a verbatim-selection engine to filter context records and is provider-neutral, shadowing default behavior while allowing explicit selection in select mode. The action ensures exact fail-open outcomes and reports Token and reduction figures as estimates rather than billed usage.