Sviluppo · Server MCP remoto
GitHub Actions Audit
GitHub Actions workflow security audit - 21 checks: pinning, permissions, secrets, injection.
Cosa indica il MCP Registry
La voce come pubblicata nel MCP Registry ufficiale (consultazione: 4 ottobre 2026), ultima versione.
- Nome nel registro
io.github.UnbearableDev/github-actions-audit- Versione
- 1.0.1
- Stato
- Attivo
- Categoria
- sviluppo
- Trasporto
- Streamable HTTP
- Pubblicato
- 10 giugno 2026
- Aggiornato
- 10 giugno 2026
- Editore
- UnbearableDev (GitHub) · 6 server con una pagina qui
- Namespace
- Namespace verificato dal MCP Registry tramite GitHub (github.com/UnbearableDev) · come funziona
- Elencato in
- Server MCP per GitHub e Server MCP per GitHub Actions
- Repository
- github.com/UnbearableDev/github-actions-audit
- Fonte
- Voce nell’API del registro
Endpoint remoti
| Trasporto | URL | Header dichiarati |
|---|---|---|
| Streamable HTTP | https://unbearable-dev--github-actions-audit.apify.actor/mcp | Authorization (obbligatorio, segreto) |
Verifica live
Questa directory si è collegata a ogni endpoint remoto e ne ha richiesto l’elenco degli strumenti. La verifica si limita a collegarsi e a elencare gli strumenti; non li esegue, non effettua l’accesso e non testa la sicurezza.
- Raggiungibile
- Sì (HTTP 401)
- Handshake
- Non completato: accesso richiesto
- Accesso richiesto
- Sì - HTTP 401
- Data della verifica
- 5 ottobre 2026
Come collegare GitHub Actions Audit
GitHub Actions Audit è un server MCP remoto: non c’è niente da installare. Il suo endpoint, servito tramite Streamable HTTP, è https://unbearable-dev--github-actions-audit.apify.actor/mcp. In un assistente che accetta server MCP remoti (spesso in un’impostazione chiamata connettori, integrazioni o strumenti) si aggiunge un nuovo server indicando questo URL; in un client configurato tramite file lo si aggiunge come server remoto (HTTP) con lo stesso URL.
La voce del registro dichiara un header HTTP per la connessione: Authorization (obbligatorio, segreto). Un header segreto contiene di solito una chiave API o un token rilasciato dal servizio; i client che accettano header personalizzati lo impostano insieme all’URL del server.
Ricavato dalla voce del registro; la verifica live riportata sopra mostra solo se l’endpoint ha risposto. Cosa fa il server, e a quali condizioni, lo stabilisce il suo editore; prima di concedergli l’accesso ai propri account o file conviene consultarne il repository o il sito web. Come aggiungere un server MCP a un assistente · Prima di collegare un server
Altri server di UnbearableDev (GitHub)
| Server | Esecuzione |
|---|---|
| Docker Compose AuditSecurity audit for docker-compose.yml - 25 checks: secrets, privileges, network, volumes, images. | Remoto · HTTPVerifica live: accesso richiesto |
| Dockerfile AuditHadolint-grade Dockerfile audit - 19 checks: secrets, privileges, supply chain, hygiene. | Remoto · HTTPVerifica live: accesso richiesto |
| Hungarian Postcode ValidatorHungarian postcode lookup + validation - 3,484 codes, sub-10ms lookups, bulk address endpoint. | Remoto · HTTPVerifica live: accesso richiesto |
| IAC Audit PackFour IaC audits in one call: Compose, Dockerfile, GitHub Actions, Kubernetes. 131 checks. | Remoto · HTTPVerifica live: accesso richiesto |
| Kubernetes Manifest AuditKube-linter audit for Kubernetes manifests - 63 checks: security, availability, RBAC, network. | Remoto · HTTPVerifica live: accesso richiesto |
Altri server della categoria sviluppo
| Server | Esecuzione |
|---|---|
| GitHubConnect AI assistants to GitHub - manage repos, issues, PRs, and workflows through natural language. | Remoto e locale · HTTP e stdioVerifica live: accesso richiesto |
| GithubGitHub MCP - wraps the GitHub public REST API (no auth required for public endpoints) | Remoto · HTTPVerifica live: ✓ handshake |
| GithubGitHub analytics - repos, PRs, issues, releases, contributors. | Locale · stdio |
| Github ActionsGitHub Actions MCP - view runs, read logs, re-run jobs, and manage CI/CD. | Locale · stdio |
| GitHub Actions Security AuditAudit GitHub Actions workflows for script injection, unpinned actions and missing permissions. | Remoto · HTTPVerifica live: accesso richiesto |
| Github Analytics MCP ServerGet GitHub repository stats, search repos, analyze languages, and compare projects. | Locale · stdio |
| Github GistMCP server to create, read, update, list, and search GitHub Gists from your IDE. | Locale · stdio |
| GitHub Inside Claude CodeNormalized GitHub-CLI bridge for Claude Code - 89 ops, 6 families incl. federation sources. | Locale · stdio |