Below you will find pages that utilize the taxonomy term “vmvarela”
March 26, 2026
Ghoten Action
Version updated for https://github.com/vmvarela/ghoten to version v1.13.0.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Ghoten is a fork of OpenTofu that introduces a native oras backend for managing Terraform/OpenTofu state in OCI-compatible container registries, such as GitHub Container Registry (GHCR). It simplifies state management by eliminating the need for a separate backend service, leveraging existing registry authentication, permissions, and auditing.
March 19, 2026
SonarQube to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-sarif to version v1.1.0.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 20.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action integrates SonarQube analysis results with GitHub by converting SonarQube issues into SARIF format, enabling them to appear in GitHub’s Security tab, pull request annotations, and check run summaries.
March 18, 2026
Ghoten Action
Version updated for https://github.com/vmvarela/ghoten to version v1.12.5.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Ghoten is a GitHub Action and OpenTofu fork that integrates a native oras backend for storing Terraform/OpenTofu state directly in OCI registries (e.g., GitHub Container Registry), eliminating the need for separate backend services. It simplifies state management by leveraging existing registry authentication, permissions, and auditing, making it operationally efficient and secure by default.
March 15, 2026
SonarQube to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-sarif to version v1.0.0.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 20.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action integrates SonarQube analysis results with GitHub by converting issues into SARIF format for code scanning and creating pull request annotations, check run summaries, and optional PR comments. It automates the process of fetching, filtering, and presenting SonarQube findings directly within the GitHub interface, ensuring developers can access actionable code quality insights where they work.
March 14, 2026
Ghoten Action
Version updated for https://github.com/vmvarela/ghoten to version v1.12.4.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Ghoten is a GitHub Action and OpenTofu fork that introduces a native oras backend for storing Terraform/OpenTofu state in OCI-compatible registries (e.g., GitHub Container Registry), eliminating the need for custom HTTP backends. It simplifies state management by leveraging existing container registries for authentication, permissions, and auditing, reducing operational complexity and enabling seamless integration within GitHub Actions.
March 6, 2026
SonarQube Community to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-ce-sarif-action to version v1.0.1.
This action is used across all versions by ? repositories. Action Type This is a Node action using Node version 20.
Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action enables seamless integration of SonarQube Community Edition (CE) analysis results into GitHub by converting SonarQube issues into the SARIF format, which is compatible with GitHub’s security and code scanning features.
March 6, 2026
Ghoten Action
Version updated for https://github.com/vmvarela/ghoten to version v1.12.3.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Ghoten is a GitHub Action and OpenTofu fork that simplifies Terraform/OpenTofu state management by introducing a native oras backend for storing state in OCI registries (e.g., GHCR) without requiring additional services. It leverages existing container registry authentication, permissions, and auditing to reduce operational complexity, providing safe and efficient state management with built-in locking, retries, and optional compression.
February 26, 2026
Ghoten Action
Version updated for https://github.com/vmvarela/ghoten to version v1.12.2.
This action is used across all versions by ? repositories. Action Type This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary Ghoten is a GitHub Action designed to integrate with OpenTofu while providing a native ORAS backend for storing infrastructure state in OCI-compatible registries like GitHub Container Registry (GHCR). It automates tasks such as state storage, versioning, and locking, eliminating the need for external backends or third-party tools.
January 13, 2026
SonarQube Community to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-ce-sarif-action to version v1.0.0.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action integrates SonarQube Community Edition (CE) with GitHub by converting SonarQube analysis results into SARIF format, enabling PR decoration, inline annotations, and integration with the GitHub Security Tab. It automates the process of surfacing SonarQube issues within GitHub’s user interface, providing developers with actionable insights directly in pull requests, check summaries, and the Security Tab.
January 5, 2026
SonarQube Community to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-ce-sarif-action to version v0.3.1.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action integrates SonarQube Community Edition (CE) with GitHub, enabling features like pull request (PR) decoration, inline code annotations, issue summaries, and GitHub Security Tab integration that are typically unavailable in the CE version. It automates the process of converting SonarQube scan results into SARIF format, providing actionable insights and better visibility of code quality and security issues directly within the GitHub interface.
January 2, 2026
SonarQube Community to GitHub Security Tab (SARIF)
Version updated for https://github.com/vmvarela/sonarqube-ce-sarif-action to version v0.3.0.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Action Summary This GitHub Action integrates SonarQube Community Edition with GitHub by converting SonarQube scan results into SARIF format and uploading them to the GitHub Security Tab. It automates PR feedback through inline annotations, check summaries, and issue tracking in GitHub’s Security Tab, addressing the lack of native integration in SonarQube CE.