{"payload":{"featured":[],"recommended":[],"recently_added":[],"search_results":{"results":[{"type":"marketplace_listing","id":"17323","state":"unverified","name":"signal.fyi","free":true,"primary_category":"Dependency management","secondary_category":"Utilities","is_verified_owner":true,"slug":"www-signal-fyi","owner_login":"signalfyi","resource_path":"/marketplace/www-signal-fyi","installation_count":6,"full_description":"signal.fyi automates Docker image version updates through pull requests against your default branch, monitoring\nmulti-file and/or multi-stage Dockerfiles in your repository (max:3/repository). Enhance compliance, security, and the a\nhref=\nhttps://www.cisa.gov/sbom#:~:text=A%20%E2%80%9Csoftware%20bill%20of%20materials,that%20make%20up%20software%20components.\ntarget= _blank Software Bill of Materials (SBOM) /a context with auditable and traceable records of your Docker image\nversions.\n","short_description":"Automates multifile and/or multistage Docker image version updates via PR's against the default branch (max:3/repo)","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/17323?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":17323,"state":6,"name":"signal.fyi","slug":"www-signal-fyi","short_description":"Automates multifile and/or multistage Docker image version updates via PR's against the default branch (max:3/repo)","full_description":"signal.fyi automates Docker image version updates through pull requests against your default branch, monitoring multi-file and/or multi-stage Dockerfiles in your repository (max:3/repository). Enhance compliance, security, and the Software Bill of Materials (SBOM) context with auditable and traceable records of your Docker image versions.","extended_description":"signal.fyi streamlines Docker image version management in projects, enhancing security and compliance. It integrates their latest versions via pull requests, ideal for multi-file and multi-stage builds. With a configured CI/CD pipeline for auto-merging or deploying pull requests, signal.fyi enables seamless update automation. This minimizes vulnerability risks and aligns with regulatory standards. For management, it's a strategic tool to boost security and streamline workflows. It ensures software integrity and reliability, making the update process transparent and efficient. signal.fyi supports a secure, compliant development lifecycle, automating critical updates for focused innovation.","primary_category_id":11,"secondary_category_id":29,"privacy_policy_url":"https://www.signal.fyi/legal/","tos_url":"https://www.signal.fyi/legal/","company_url":"https://www.signal.fyi/","status_url":"https://www.signal.fyi/","support_url":"https://github.com/signalfyi/support","documentation_url":"https://www.signal.fyi/","pricing_url":null,"bgcolor":"ffffff","light_text":true,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":4392,"technical_email":"contact@signal.fyi","marketing_email":"contact@signal.fyi","finance_email":"contact@signal.fyi","direct_billing_enabled":false,"by_github":false,"security_email":"contact@signal.fyi","listable_type":"Integration","listable_id":340818,"copilot_app":false}}},{"type":"marketplace_listing","id":"14937","state":"unverified","name":"InfieldAI","free":false,"primary_category":"Dependency management","secondary_category":"Security","is_verified_owner":false,"slug":"infieldai","owner_login":"infieldai","resource_path":"/marketplace/infieldai","installation_count":73,"full_description":"Drowning in open upgrade PRs?\n\nWe researched, parsed, and validated thousands of open source changelogs so you can upgrade quickly and safely.\n","short_description":"Upgrade dependencies safely and easily with Infield-verified changelogs","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/14937?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":14937,"state":6,"name":"InfieldAI","slug":"infieldai","short_description":"Upgrade dependencies safely and easily with Infield-verified changelogs","full_description":"### Drowning in open upgrade PRs? \nWe researched, parsed, and validated thousands of open source changelogs so you can upgrade quickly and safely.\n\n\n\n","extended_description":"### Upgrade safely\nWe've parsed the changelog, categorized the changes, and evaluated each change's potential to break your app. \n\n### Increase Visibility\nSort and filter your dependencies to see which ones are stale, abandoned, or high risk. \n\n### Minimize Toil\nMake your upgrade work more efficient with Infield's automatic changelog research and impact analysis.\n\nQuestions? Reach out to InfieldAI founders directly at [founders@infield.ai](founders@infield.ai).","primary_category_id":11,"secondary_category_id":6,"privacy_policy_url":"https://www.infield.ai/privacy","tos_url":"https://www.infield.ai/terms","company_url":"https://www.infield.ai/","status_url":"","support_url":"support@infield.ai","documentation_url":"","pricing_url":null,"bgcolor":"ffffff","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":3708,"technical_email":"steve@infield.ai","marketing_email":"andrew@infield.ai","finance_email":"allison@infield.ai","direct_billing_enabled":false,"by_github":false,"security_email":"steve@infield.ai","listable_type":"Integration","listable_id":300994,"copilot_app":false}}},{"type":"marketplace_listing","id":"13233","state":"unverified","name":"Threatrix","free":true,"primary_category":"Security","secondary_category":"Dependency management","is_verified_owner":true,"slug":"threatrix","owner_login":"threatrix","resource_path":"/marketplace/threatrix","installation_count":38,"full_description":"Graduate To Threatrix\n\nThreatrix is the first-to-market, cost-effective solution, providing continual license compliance and automated\nsecurity, allowing organizations to determine their exposure to open source risks with one solution. Actionable results\ndrive measurable reductions in risk, saving organizations developer time and costly remediation efforts for compliance\nteams.\n\nThreatrix provides hyper-accurate, audit quality results with its first-to-market technology.\n","short_description":"Audit quality, snippet level, open source security and license compliance in build-time with auto-remediation","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/13233?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":13233,"state":6,"name":"Threatrix","slug":"threatrix","short_description":"Audit quality, snippet level, open source security and license compliance in build-time with auto-remediation","full_description":"## Graduate To Threatrix\nThreatrix is the first-to-market, cost-effective solution, providing continual license compliance and automated security, allowing organizations to determine their exposure to open source risks with one solution. Actionable results drive measurable reductions in risk, saving organizations developer time and costly remediation efforts for compliance teams.\n\nThreatrix provides hyper-accurate, audit quality results with its first-to-market technology.","extended_description":"Nearly four years of research and development have culminated in the creation of our core technologies. Threatrix Origin Tracing technology ensures the most accurate open source match results producing immediately actionable data from build time scans.\n\nWith support for more than 400 languages and growing every day, Threatrix encompasses, by far, the broadest coverage of any tool in the market.\n\n### Continuous Security\nThreatrix continuously scans your repositories for security vulnerabilities and creates fix requests for the next or latest security versions of components.\n\n### Continuous Compliance\nThreatrix produces hyper-accurate results in minutes allowing your team to perform continuous triage of license issues to stay ahead of open source risks. VCs are using Threatrix to determine risks with their investments. Failing to comply with all of your open source licenses may kill your next funding round.\n\n","primary_category_id":6,"secondary_category_id":11,"privacy_policy_url":"https://threatrix.io/privacy","tos_url":"https://threatrix.io/terms","company_url":"https://threatrix.io/","status_url":"","support_url":"support@threatrix.io","documentation_url":"https://docs.threatrix.io/","pricing_url":null,"bgcolor":"ffffff","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":0,"technical_email":"john@threatrix.io","marketing_email":"kristen@threatrix.io","finance_email":"john@threatrix.io","direct_billing_enabled":false,"by_github":false,"security_email":"john@threatrix.io","listable_type":"Integration","listable_id":220916,"copilot_app":false}}},{"type":"marketplace_listing","id":"16139","state":"unverified","name":"EdgeBit Security","free":true,"primary_category":"Security","secondary_category":"Dependency management","is_verified_owner":false,"slug":"edgebit-security","owner_login":"edgebitio","resource_path":"/marketplace/edgebit-security","installation_count":14,"full_description":"Prevent insecure dependencies before they can merge. Track and remediate vulnerabilities in your entire supply chain.\n\nEdgeBit is a real-time SCA tool that uses data about how your app executes in production to filter out irrelevant\nvulnerabilities and dormant code.\n","short_description":"Real-time SCA tool to find issues in your supply chain and rank threats with context from production execution","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/16139?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":16139,"state":6,"name":"EdgeBit Security","slug":"edgebit-security","short_description":"Real-time SCA tool to find issues in your supply chain and rank threats with context from production execution","full_description":"**Prevent insecure dependencies before they can merge. Track and remediate vulnerabilities in your entire supply chain.**\n\nEdgeBit is a [real-time SCA tool](https://edgebit.io/solutions/vulnerability-management/?utm_source=github) that uses data about how your app executes in production to filter out irrelevant vulnerabilities and dormant code.\n\n","extended_description":" - **Detection in Pull Request**: Identify risks in new dependencies right in a PR\n - **Prioritized CVEs**: Ruthlessly prioritize issues to fix based on real-time context\n - **Supply Chain Inventory**: Track dependency track usage across your software components\n - **Generate SBOMs automatically**: SBOMs for compliance artifacts\n \n Dependencies for software products are exploding in number and with that comes a sprawling supply chain. A supply chain isn't just a build-time check, it's highly dynamic.\n\nEdgeBit watches in real time — we cross-reference your build pipelines here on GitHub and server fleet with multiple data sources to communicate your live inventory and actual risk.","primary_category_id":6,"secondary_category_id":11,"privacy_policy_url":"https://edgebit.io/legal/privacy/","tos_url":"https://edgebit.io/legal/terms/","company_url":"https://edgebit.io","status_url":"https://status.edgebit.io","support_url":"https://edgebit.io/support/","documentation_url":"https://edgebit.io/docs/0.x/","pricing_url":null,"bgcolor":"fff","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":0,"technical_email":"eugene@edgebit.io","marketing_email":"founders@edgebit.io","finance_email":"rob@edgebit.io","direct_billing_enabled":false,"by_github":false,"security_email":"security@edgebit.io","listable_type":"Integration","listable_id":357519,"copilot_app":false}}},{"type":"marketplace_listing","id":"17410","state":"unverified","name":"DepsHub App","free":true,"primary_category":"Dependency management","secondary_category":"AI Assisted","is_verified_owner":true,"slug":"depshub-app","owner_login":"DepshubHQ","resource_path":"/marketplace/depshub-app","installation_count":29,"full_description":"Update all your dependencies on autopilot.\n\nWe use AI to process changelogs and release notes, analyze your codebase, and automatically update your dependencies,\nincluding any breaking changes.\n\nDepsHub helps you to save time by providing a simple and easy way to monitor and update your dependencies.\n","short_description":"Update all your dependencies on autopilot","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/17410?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":17410,"state":6,"name":"DepsHub App","slug":"depshub-app","short_description":"Update all your dependencies on autopilot","full_description":"Update all your dependencies on autopilot.\n\nWe use AI to process changelogs and release notes, analyze your codebase, and automatically update your dependencies, **including any breaking changes**.\n\nDepsHub helps you to save time by providing a simple and easy way to monitor and update your dependencies.","extended_description":"- 🌈 Noise-free dependency management\nGet access to the tools you keep your dependencies in check. Whether you have a team of 2 or 200.\n\n- 📂 Cross-repository overview\nSee all your dependencies in one place. No more digging through repositories.\n\n- 🎓 License compliance\nAvoid legal trouble by making sure your dependencies are licensed correctly.\n\n- 🚨 Security alerts\nGet notified when a dependency has a security vulnerability. Update your code only if it affects you.","primary_category_id":11,"secondary_category_id":39,"privacy_policy_url":"https://depshub.com/privacy","tos_url":"","company_url":"https://depshub.com","status_url":"","support_url":"https://depshub.com/","documentation_url":"","pricing_url":null,"bgcolor":"bdee63","light_text":true,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":4420,"technical_email":"andriy@depshub.com","marketing_email":"andriy@depshub.com","finance_email":"andriy@depshub.com","direct_billing_enabled":false,"by_github":false,"security_email":"andriy@depshub.com","listable_type":"Integration","listable_id":338422,"copilot_app":false}}},{"type":"marketplace_listing","id":"3768","state":"unverified","name":"Debricked","free":false,"primary_category":"Security","secondary_category":"Dependency management","is_verified_owner":true,"slug":"debricked","owner_login":"debricked","resource_path":"/marketplace/debricked","installation_count":2375,"full_description":"Debricked s tool allows you to discover known vulnerabilities in your open source-libraries in an early stage of your\ndevelopment process. Identify, fix and prevent open source vulnerabilities automatically with enforceable pipeline\nrules. Spend less time on manual security research and fixes; let Debricked do the work for you.\n\nDebricked is free for all open source projects!\n","short_description":"Automatically identify, fix and prevent vulnerabilities in your open source dependencies","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/3768?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":3768,"state":6,"name":"Debricked","slug":"debricked","short_description":"Automatically identify, fix and prevent vulnerabilities in your open source dependencies","full_description":"Debricked's tool allows you to discover known vulnerabilities in your open source-libraries in an early stage of your development process. **Identify**, **fix** and **prevent** open source vulnerabilities automatically with enforceable pipeline rules. Spend less time on manual security research and fixes; let Debricked do the work for you. \n\n**Debricked is free for all open source projects!** \n\n\n\n\n\n","extended_description":"Debricked makes it easy to maintain a good state of security in your project. \n\nThe tool allows you to:\n\n- Detect vulnerabilities in your direct and indirect dependencies\n- Integrate seamlessly with other systems used in your everyday workflow\n- Prioritise with the help of our own score, debAI, and make informed decisions \n- Fix vulnerabilities using our suggestions and advise as well as pull requests\n- Prevent dependencies with severe vulnerabilities from entry using automated rules\n- Prevent using dependencies with incompatible licenses\n\nWe support a [wide range of languages and package managers](https://debricked.com/documentation/language-support/), and more are being added as we go!\n\n","primary_category_id":6,"secondary_category_id":11,"privacy_policy_url":"https://debricked.com/privacy-policy/?utm_source=github&utm_medium=marketplace&utm_campaign=github-marketplace","tos_url":"https://debricked.com/terms-and-conditions/?utm_source=github&utm_medium=marketplace&utm_campaign=github-marketplace","company_url":"https://debricked.com/?utm_source=github&utm_medium=marketplace&utm_campaign=github-marketplace","status_url":"","support_url":"https://debricked.com/contact/?utm_source=github&utm_medium=marketplace&utm_campaign=github-marketplace","documentation_url":"https://debricked.com/documentation/1.0/integrations/ci-build-systems/github?utm_source=github&utm_medium=marketplace&utm_campaign=github-marketplace","pricing_url":null,"bgcolor":"0d1840","light_text":true,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":2763,"technical_email":"oscar.reimer@debricked.com","marketing_email":"joanna.qvarnstrom@debricked.com","finance_email":"daniel.wisenhoff@debricked.com","direct_billing_enabled":false,"by_github":false,"security_email":"martin.hell@debricked.com","listable_type":"Integration","listable_id":24490,"copilot_app":false}}},{"type":"marketplace_listing","id":"17133","state":"unverified","name":"OpenSCA SaaS OAuth","free":true,"primary_category":"Security","secondary_category":"Dependency management","is_verified_owner":false,"slug":"opensca-saas-oauth","owner_login":"XmirrorSecurity","resource_path":"/marketplace/opensca-saas-oauth","installation_count":3,"full_description":"OpenSCA is the open source realization of SCA (Software Composition Analysis) technology. As the open source version of\nXmirror SCA, it has been endowed with the core abilities of mixed-source application security detection. Aiming at\nguarding open source security, it is competent to dig out the hiding vulnerabilities and compliance risks in all\ncomponents by dependency analysis, characteristic analysis, reference identification and compliance analysis.\n","short_description":"OpenSCA is an open source solution to check your software for supply chain security risks","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/17133?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":17133,"state":6,"name":"OpenSCA SaaS OAuth","slug":"opensca-saas-oauth","short_description":"OpenSCA is an open source solution to check your software for supply chain security risks","full_description":"OpenSCA is the open source realization of SCA (Software Composition Analysis) technology. As the open source version of Xmirror SCA, it has been endowed with the core abilities of mixed-source application security detection. Aiming at guarding open source security, it is competent to dig out the hiding vulnerabilities and compliance risks in all components by dependency analysis, characteristic analysis, reference identification and compliance analysis.","extended_description":"Unlike traditional commercial SCA tools, OpenSCA has offered an open source solution to the management of open source risks which is full of potential. Being both complete in ability and easy to use, it supports various scenarios including online/offline, IDE/CMD/SaaS, etc. while allows customized configuration such as local vulnerability databse and private repos. Generally speaking, OpenSCA is intended for outputting transparent component assets & risk list for companies, organizations and individual developers in a flexible way.\n\nBased on OpenSCA, we've built up a global community covering industries of telecom, internet, IoV, finance, energy and so on. We sincerely hope that our project can be a stage for communication and innovation of open source stakeholders.","primary_category_id":6,"secondary_category_id":11,"privacy_policy_url":"https://opensca.xmirror.cn","tos_url":"","company_url":"https://www.xmirror.cn","status_url":"","support_url":"https://github.com/XmirrorSecurity/OpenSCA-cli/issues","documentation_url":"","pricing_url":null,"bgcolor":"ffffff","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":0,"technical_email":"opensca@anpro-tech.com","marketing_email":"opensca@anpro-tech.com","finance_email":"opensca@anpro-tech.com","direct_billing_enabled":false,"by_github":false,"security_email":"opensca@anpro-tech.com","listable_type":"Integration","listable_id":793629,"copilot_app":false}}},{"type":"marketplace_listing","id":"15130","state":"unverified","name":"PackjGuard","free":true,"primary_category":"Security","secondary_category":"Dependency management","is_verified_owner":false,"slug":"packjguard","owner_login":"ossillate-inc","resource_path":"/marketplace/packjguard","installation_count":11,"full_description":"PackjGuard is a Github app that monitors :eyes: your public/private repos 24x7 for malicious, vulnerable,\nabandoned/deprecated, and other risky dependencies and mitigates :shield: software supply-chain attacks by creating pull\nrequests for automatic remediation.\n\nA recent (Dec 22) example is PyTorch package that was compromised using dependency confusion vulnerability (no CVE\nassigned).\n\nIt is based on our open-source auditing tool Packj\n","short_description":"Hardens your repo, detects dependency confusion & typo-squatting attempts, blocks malicious/risky open-source dependencies","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/15130?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":15130,"state":6,"name":"PackjGuard","slug":"packjguard","short_description":"Hardens your repo, detects dependency confusion & typo-squatting attempts, blocks malicious/risky open-source dependencies","full_description":"PackjGuard is a Github app that **monitors** :eyes: your public/private repos 24x7 for malicious, vulnerable, abandoned/deprecated, and other \"risky\" dependencies and mitigates :shield: software supply-chain attacks by creating pull requests for **automatic remediation**.\n\nA recent (Dec'22) example is PyTorch package that was compromised using dependency confusion vulnerability (no CVE assigned).\n\nIt is based on our open-source auditing tool [Packj](https://github.com/ossillate-inc/packj)","extended_description":"# What\n\nPackjGuard protects you against the following modern supply-chain threats (beyond CVEs) that existing scanners fail to detect:\n\n:white_check_mark: **Dependency confusion attacks**\n\n:white_check_mark: **Typo-squatting or repo-jacking attacks**\n\n:white_check_mark: **Bad actors that sabotage their package** \n\n:white_check_mark: **Maintainer account or package takeovers**\n\n:white_check_mark: **CVEs or publicly known vulnerabilities** \n\n# Why\n\nExisting vulnerability scanners **assume** that open-source code is **BENIGN and **ONLY** address threats from accidental programming bugs (a.k.a. code CVEs such as Log4J). They **FAIL TO** protect against Solarwinds-like modern attacks from deliberately bad (a.k.a. malicious) code that is propagated by bad actors using new vulnerabilities in the supply channel, such as dependency confusion, typo-squatting, protestware (sabotaging), account hijacking, and social engineering. [Read more](https://docs.npmjs.com/threats-and-mitigations)]","primary_category_id":6,"secondary_category_id":11,"privacy_policy_url":"https://packj.dev/privacy","tos_url":"","company_url":"https://packj.dev/guard","status_url":"","support_url":"https://packj.dev/contact","documentation_url":"https://github.com/ossillate-inc/packj","pricing_url":null,"bgcolor":"ffffff","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":3751,"technical_email":"oss@ossillate.com","marketing_email":"oss@ossillate.com","finance_email":"oss@ossillate.com","direct_billing_enabled":false,"by_github":false,"security_email":"oss@ossillate.com","listable_type":"Integration","listable_id":316888,"copilot_app":false}}},{"type":"marketplace_listing","id":"16632","state":"unverified","name":"Grit App","free":true,"primary_category":"AI Assisted","secondary_category":"Dependency management","is_verified_owner":false,"slug":"grit-app","owner_login":"getgrit","resource_path":"/marketplace/grit-app","installation_count":1490,"full_description":"Grit provide an automated maintenance engineer that continuously modernizes your codebase by generating pull requests to\ntake care of maintenance tasks and standards enforcement.\n\nWe provide off-the-shelf modernizations (ex. upgrading old versions of Java, converting from Angular to React) and API\nupgrades, but also allow you to easily define your own internal conventions with a single example.\n","short_description":"Software maintenance on autopilot","extended_description":null,"listing_logo_url":"https://avatars.githubusercontent.com/ml/16632?s=400&v=4","recommended":false,"marketplace_listing":{"listing":{"id":16632,"state":6,"name":"Grit App","slug":"grit-app","short_description":"Software maintenance on autopilot","full_description":"Grit provide an automated maintenance engineer that continuously modernizes your codebase by generating pull requests to take care of maintenance tasks and standards enforcement.\n\nWe provide off-the-shelf modernizations (ex. upgrading old versions of Java, converting from Angular to React) and API upgrades, but also allow you to easily define your own internal conventions with a single example.","extended_description":"Grit provides powerful features for fixing code. Learn more in the [Grit docs](https://docs.grit.io).","primary_category_id":39,"secondary_category_id":11,"privacy_policy_url":"https://docs.grit.io/privacy","tos_url":"https://docs.grit.io/terms","company_url":"https://grit.io","status_url":"","support_url":"https://docs.grit.io/","documentation_url":"https://docs.grit.io/","pricing_url":null,"bgcolor":"2D1DFF","light_text":false,"learn_more_url":null,"installation_url":null,"how_it_works":null,"hero_card_background_image_id":4212,"technical_email":"support@grit.io","marketing_email":"admin@grit.io","finance_email":"admin@grit.io","direct_billing_enabled":false,"by_github":false,"security_email":"security@grit.io","listable_type":"Integration","listable_id":220395,"copilot_app":false}}}],"total":9,"total_pages":1},"categories":{"apps":[{"name":"API management","slug":"api-management","description_html":"

Structure your API infrastructure to enable various internet gateways to interact with your service.

\n"},{"name":"Backup Utilities","slug":"backup-utilities","description_html":"

Utilities providing periodic backups of your GitHub data

\n"},{"name":"Chat","slug":"chat","description_html":"

Bring GitHub into your conversations.

\n"},{"name":"Code quality","slug":"code-quality","description_html":"

Automate your code review with style, quality, security, and test‑coverage checks when you need them.

\n"},{"name":"Code review","slug":"code-review","description_html":"

Ensure your code meets quality standards and ship with confidence.

\n"},{"name":"Container CI","slug":"container-ci","description_html":"

Continuous integration for container applications.

\n"},{"name":"Continuous integration","slug":"continuous-integration","description_html":"

Automatically build and test your code as you push it to GitHub, preventing bugs from being deployed to production.

\n"},{"name":"Dependency management","slug":"dependency-management","description_html":"

Secure and manage your third-party dependencies.

\n"},{"name":"Deployment","slug":"deployment","description_html":"

Streamline your code deployment so you can focus on your product.

\n"},{"name":"Deployment Protection Rules","slug":"deployment-protection-rules","description_html":"

Enables custom protection rules to gate deployments with third-party services

\n"},{"name":"Game CI","slug":"game-ci","description_html":"

Tools for building a CI pipeline for game development

\n"},{"name":"IDEs","slug":"ides","description_html":"

Find the right interface to build, debug, and deploy your source code.

\n"},{"name":"Learning","slug":"learning","description_html":"

Get the skills you need to level up.

\n"},{"name":"Localization","slug":"localization","description_html":"

Extend your software's reach. Localize and translate continuously from GitHub.

\n"},{"name":"Mobile","slug":"mobile","description_html":"

Improve your workflow for the small screen.

\n"},{"name":"Mobile CI","slug":"mobile-ci","description_html":"

Continuous integration for Mobile applications

\n"},{"name":"Monitoring","slug":"monitoring","description_html":"

Monitor the impact of your code changes. Measure performance, track errors, and analyze your application.

\n"},{"name":"Project management","slug":"project-management","description_html":"

Organize, manage, and track your project with tools that build on top of issues and pull requests.

\n"},{"name":"Publishing","slug":"publishing","description_html":"

Get your site ready for production so you can get the word out.

\n"},{"name":"Recently added","slug":"recently-added","description_html":"

The latest tools that help you and your team build software better, together.

\n"},{"name":"Security","slug":"security","description_html":"

Find, fix, and prevent security vulnerabilities before they can be exploited.

\n"},{"name":"Support","slug":"support","description_html":"

Get your team and customers the help they need.

\n"},{"name":"Testing","slug":"testing","description_html":"

Eliminate bugs and ship with more confidence by adding these tools to your workflow.

\n"},{"name":"Utilities","slug":"utilities","description_html":"

Auxiliary tools to enhance your experience on GitHub

\n"}],"actions":[{"name":"API management","slug":"api-management","description_html":"

Structure your API infrastructure to enable various internet gateways to interact with your service.

\n"},{"name":"Backup Utilities","slug":"backup-utilities","description_html":"

Utilities providing periodic backups of your GitHub data

\n"},{"name":"Chat","slug":"chat","description_html":"

Bring GitHub into your conversations.

\n"},{"name":"Code quality","slug":"code-quality","description_html":"

Automate your code review with style, quality, security, and test‑coverage checks when you need them.

\n"},{"name":"Code review","slug":"code-review","description_html":"

Ensure your code meets quality standards and ship with confidence.

\n"},{"name":"Container CI","slug":"container-ci","description_html":"

Continuous integration for container applications.

\n"},{"name":"Continuous integration","slug":"continuous-integration","description_html":"

Automatically build and test your code as you push it to GitHub, preventing bugs from being deployed to production.

\n"},{"name":"Dependency management","slug":"dependency-management","description_html":"

Secure and manage your third-party dependencies.

\n"},{"name":"Deployment","slug":"deployment","description_html":"

Streamline your code deployment so you can focus on your product.

\n"},{"name":"Deployment Protection Rules","slug":"deployment-protection-rules","description_html":"

Enables custom protection rules to gate deployments with third-party services

\n"},{"name":"Game CI","slug":"game-ci","description_html":"

Tools for building a CI pipeline for game development

\n"},{"name":"GitHub Sponsors","slug":"github-sponsors","description_html":"

Tools to manage your GitHub Sponsors community

\n"},{"name":"IDEs","slug":"ides","description_html":"

Find the right interface to build, debug, and deploy your source code.

\n"},{"name":"Learning","slug":"learning","description_html":"

Get the skills you need to level up.

\n"},{"name":"Localization","slug":"localization","description_html":"

Extend your software's reach. Localize and translate continuously from GitHub.

\n"},{"name":"Mobile","slug":"mobile","description_html":"

Improve your workflow for the small screen.

\n"},{"name":"Mobile CI","slug":"mobile-ci","description_html":"

Continuous integration for Mobile applications

\n"},{"name":"Monitoring","slug":"monitoring","description_html":"

Monitor the impact of your code changes. Measure performance, track errors, and analyze your application.

\n"},{"name":"Project management","slug":"project-management","description_html":"

Organize, manage, and track your project with tools that build on top of issues and pull requests.

\n"},{"name":"Publishing","slug":"publishing","description_html":"

Get your site ready for production so you can get the word out.

\n"},{"name":"Security","slug":"security","description_html":"

Find, fix, and prevent security vulnerabilities before they can be exploited.

\n"},{"name":"Support","slug":"support","description_html":"

Get your team and customers the help they need.

\n"},{"name":"Testing","slug":"testing","description_html":"

Eliminate bugs and ship with more confidence by adding these tools to your workflow.

\n"},{"name":"Utilities","slug":"utilities","description_html":"

Auxiliary tools to enhance your experience on GitHub

\n"}]}},"title":"Marketplace"}