First-party GitHub Action (action.yml) with Marketplace listing for scheduled attack-surface monitoring
Les mainteneurs répondent en général sous 1 jour
Personne n'a encore pris cette issue.
Évaluation
- Difficulté
- 5/5
- Temps estimé
- Plus d'une semaine
- Accessibilité débutants
- 35/100
Piste de recherche
Start with ROADMAP.md:24 and the existing -diff, exit-code-4, -stats, and signed-release behavior described in the issue. Define the composite Action inputs and steps in action.yml, including release verification and durable baseline storage; the issue does not name a baseline store, so that choice needs investigation. Done means a scheduled diff works with three inputs, the README and docs/monitoring.md use it, and the Action is listed on the Marketplace.
Rédigé par le modèle d'indexation à partir du texte de l'issue.
Description
Value / who it's for
Security teams and bug-bounty hunters who want "tell me when a new subdomain appears" without hand-maintaining a workflow. The Marketplace is a discovery channel none of the main DNS brute-force tools (puredns, shuffledns, dnsx, gobuster) occupy. It also replaces the hand-copied example in docs/monitoring.md, which has the supply-chain and baseline problems tracked separately.
Rationale
-diff, the exit code 4 on change, the -stats verdict and signed releases with attestations already exist. An Action is mostly packaging. ROADMAP.md:24 already lists it.
Suggested approach
action.yml(composite) in this repo orTMHSDigital/subenum-action. Inputs:domain/domains-file,wordlist,rate,max-queries,resolvers,fail-on: degraded|unreliable,open-issue: true.- Steps: download the release asset for the runner OS, verify the checksum or attestation, restore the baseline from a durable store, run with
-diff -stats, upload artifacts, write a job summary table, and optionally open or update an issue. - Publish to the Marketplace and tag
v1.
Done when
uses: TMHSDigital/subenum@v1 with three inputs runs a scheduled diff end to end, the README and docs/monitoring.md use it, and it's listed on the Marketplace.
- Langage dominant
- Go
- Étoiles
- 1
- Forks
- 1
- Merge moyen
- 5 j 2 h
- PR mergées (30 j)
- 3
Préparer son environnement
Lance le conteneur de développement du projet dans votre navigateur, avec votre propre compte GitHub.
- Fournit un Dockerfile ou un fichier Docker Compose
- Propose un modèle de pull request
- Lire le guide de contribution
Par où commencer
- Lisez l'issue en entier, puis le guide de contribution du projet.
- Signalez en commentaire que vous la prenez — cela évite que deux personnes fassent le même travail.
- Forkez le dépôt et travaillez sur une branche.
- Ouvrez une pull request qui référence le numéro de l'issue.
Autres issues de TMHSDigital/subenum
-
area: cli enhancement good first issue
Difficulté 2/5 1-3 heures Accessibilité débutants 88/100
TMHSDigital/subenum#136 ·
Les mainteneurs répondent en général sous 1 jour
-
community documentation good first issue
Difficulté 2/5 1-3 heures Accessibilité débutants 85/100
TMHSDigital/subenum#135 ·
Les mainteneurs répondent en général sous 1 jour
-
area: dns enhancement good first issue
Difficulté 2/5 Moins d'une heure Accessibilité débutants 90/100
TMHSDigital/subenum#134 ·
Les mainteneurs répondent en général sous 1 jour
-
community marketing priority: low
Difficulté 5/5 Plus d'une semaine Accessibilité débutants 35/100
TMHSDigital/subenum#132 · 1 commentaire ·
Les mainteneurs répondent en général sous 1 jour
-
feature priority: low
Difficulté 5/5 Plus d'une semaine Accessibilité débutants 35/100
TMHSDigital/subenum#131 ·
Les mainteneurs répondent en général sous 1 jour
Toutes les issues de TMHSDigital/subenum
Issues similaires
-
L: github:actions L: php:composer
Difficulté 2/5 1-3 heures Accessibilité débutants 88/100
dependabot/dependabot-core#16493 ·
Les mainteneurs répondent en général sous 1 jour
-
Controller pods on default limits CrashLoopBackOff and constantly reclaim memoryPeut-être pris @brsmnv l’a pris aujourd’hui. Ouvertebug
Difficulté 2/5 Moins d'une heure Accessibilité débutants 68/100
ironcore-dev/ironcore-net#560 ·
Les mainteneurs répondent en général sous 1 jour
-
Difficulté 2/5 1-3 heures Accessibilité débutants 84/100
mark3labs/mcp-go#1039 · 1 commentaire ·
Les mainteneurs répondent en général sous 8 jours
-
enhancement
Difficulté 2/5 Moins d'une heure Accessibilité débutants 78/100
JuliusBrussee/caveman#1214 ·
Les mainteneurs répondent en général sous 1 jour
-
domain/core domain/mail enhancement
Difficulté 1/5 Moins d'une heure Accessibilité débutants 92/100
Les mainteneurs répondent en général sous 1 jour