pwideman/Find Sha1-Hulud Users
Custom action to look for potential Sha1-Hulud activity related to your GitHub Enterprise
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| github-token | GitHub token with enterprise admin:org read permissions to access enterprise organizations and check membership | yes | — |
| enterprise | The slug of the GitHub Enterprise to scan for potentially compromised users | yes | — |
| output-dir | Directory to write the CSV output file (sha1-hulud-users.csv). Can be a full path or relative path. Directory will be created if it does not exist. | no | . |
Outputs
| name | description |
|---|---|
| users-found | Number of unique users with Sha1-Hulud repositories found in enterprise organizations |
| repos-found | Number of Sha1-Hulud repositories found |