{"repo":"bullfrogsec/bullfrog","free":true,"listed":false,"github":"https://github.com/bullfrogsec/bullfrog","clone":"git clone https://github.com/bullfrogsec/bullfrog.git","description":"Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows","language":"TypeScript","stars":127,"topics":["actions","egress-filtering","github","github-actions","security"],"license":"MIT","category":"security-tools","readme_excerpt":"Bullfrog Increase the security of your Github Actions workflows using Bullfrog! With Bullfrog, you can easily control all your outbound network connections made from within your Github Actions workflows by defining a list of IPs and/or domains that you want to allow. Not sure what IPs or domains? Simply use the default egress-policy: audit mode to get a list of all outbound network connections, without impacting your existing workflows. Documentation For complete documentation, visit docs.bullfrogsec.com. Usage Scenarios - Default - Block every outbound connections - Only allow requests to domains required for pulling a docker image from the docker hub - Only allow requests to a specific IP address without blocking DNS requests Default The default usage will run in audit mode and will not block any request. Block every outbound connections Only allow requests to domains required for pulling a docker image from the docker hub Only allow requests to a specific IP address without blocking DNS requests Reviewing blocked or unallowed outbound requests You can view blocked or unallowed outbound requests in the workflow summary. Control Plane Monitor connection results across all workflows and repositories in your GitHub organization using the Bullfrog control plane. Visit bullfrogsec.com to create a free account and get your API token. A free tier is available to help you gain visibility into all outbound connections across your organization. Limitations - This action is currently ","default_branch":null,"files":null,"tree":[],"storefront":"/r/bullfrogsec","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bullfrogsec/bullfrog/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}