Console’s review
· Reviewed by David Mytton
What we like
Protects runner workflows from exfiltration-style attacks by providing network observability for the runtime environment. Monitors files, process & network activity. Can block egress traffic (with allowlists), detect source code tampering, and compromised dependencies. Runs on GitHub hosted, self hosted, and VM runners.
Tradeoffs
Analysis and security recommendations are provided via a link to a web UI in the workflow output rather than natively as part of the output logs.