Skip to content

Enhance your workflow with extensions

Tools from the community and partners to simplify tasks and automate processes

    Security apps

    Find, fix, and prevent security vulnerabilities before they can be exploited.

    Rewind Backups for GitHub logo

    Automated GitHub backups so you can recover fast, stay compliant, and never lose a line of code

    GuardRails logo

    GuardRails provides continuous security feedback for modern development teams

    Cloudback: GitHub Backup & Restore logo

    Backup repositories, metadata and LFS into AWS, Azure, OneDrive, GCP. SOC2 Type II compliant. Pay per repositories, not seats

    Semgrep logo

    Code scanning at ludicrous speed. Find bugs and reachable dependency vulnerabilities. Enforce standards on every commit

    GitProtect.io FREE Backup for GitHub logo

    Automatic, daily repo and metadata backup - no maintenance needed: fast restore, DR, AWS, and S3 cloud storage support

    Socket Security logo

    Protect your app from malicious open source dependencies

    Codeac.io logo

    We help developers write clean code

    AppMap logo

    Runtime Code Review

    Scantist DevSecOps logo

    Proactive vulnerability management and license compliance for your third-party components

    SonarQube Cloud logo

    Empowering developers to detect Security Vulnerabilities, Bugs, and Code Smells in pull requests and repositories

    Debricked logo

    Automatically identify, fix and prevent vulnerabilities in your open source dependencies

    Nightfall DLP: GitHub Secrets Scanner logo

    Nightfall automatically detects PII, credentials, secrets, and more in GitHub repos via machine learning. Free tier

    Bright Security logo

    Bright is a powerful dynamic App & API security testing (DAST) platform that security teams trust and developers love

    GitGuardian logo

    Secrets Security Platform - The most downloaded GitHub app lets you find and fix hardcoded API keys in code

    Bridgecrew logo

    Find and fix security and compliance issues in Terraform, AWS Cloudformation, ARM templates, Kubernetes, and more

    Secure Code Warrior for GitHub logo

    Resolve vulnerabilities faster with highly relevant in-app secure coding learning

    Clayton for GitHub logo

    Your complete Salesforce code reviewer

    Drata (Version Control) logo

    The Drata (Version Control) app uses read-only repo access to continuously monitor your SOC 2 compliance posture

    BluBracket Community Edition logo

    BluBracket is like Clippy for code security, but—you know—not as annoying and a lot more effective

    HackerOne for GitHub logo

    HackerOne streamlines workflow between security & development to speed response, track GitHub issues & remediate faster