2 talks mention this tool across 2 BSides chapters.
CLI tool for scanning GitHub repositories to detect vulnerable GitHub Actions workflows using regex-based rules