Observed arrival · 2026-09-25
A local lint pass for GitHub Actions
Pipeline Doctor analyzes pasted GitHub Actions workflows for security, performance, cost, reliability, and maintainability issues, then recommends changes.
○Open
⊠Login
$Paid
†Ads
✦Pretty
●Pro
◎Niche
◉Human
⚑Risk
ƒJS
- For
- GitHub Actions maintainers reviewing workflow YAML
- Worth noticing
- The main section lists 45 rules across five categories, while the footer refers to 30 deterministic rules.
Field notes
The page groups checks into five families, with security listed as the largest at 22 rules; the displayed category counts total 45. Its example workflow is described as combining over-scoped permissions, a vulnerable runner setup, and unnecessary matrix spend. The roadmap separates the current browser-based scan from later service, GitHub App, telemetry, cost-analysis, and pull-request features.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
○OpenPublic substance visible
✦PrettyNotable craft visible
◎NicheUnusually specific use
ƒJavaScriptBrowser-side code central
One card from the complete issue