logo

Legitify: Open-source scanner for security misconfigurations on GitHub and GitLab

ID: 55bfd48e-1786-5f2f-a1b1-ea3210f03b20

STIX ID: report--55bfd48e-1786-5f2f-a1b1-ea3210f03b20

Feed Name: Help Net Security

Date Published: 2026-04-15

Date Updated: 2026-04-28

Author: Anamarija Pogorelec

...
...

Legitify is an open-source scanner for GitHub and GitLab that evaluates organization, repository, member, Actions, and runner group configurations for security policy violations. It exports results in text, JSON or SARIF, integrates with OSS Scorecard to flag low-scoring repos, and requires specific access tokens and permissions on each platform; archived repos and some GitLab policies may be skipped depending on flags and account level.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.