StepSecurity Logo
StepSecurity
LoginStart free
gradle/actions/dependency-submission

gradle/actions/dependency-submission

A collection of GitHub Actions to accelerate your Gradle Builds on GitHub

GitHubGitHub Repository

327 stars

Node.js

Node Action

Maintained action available

Score updated 4 days ago

GitHub Actions security score

gradle/actions/dependency-submission

Score

7/10

License

Other

Maintained

30 commit(s) and 15 issue activity found in the last 90 days -- score normalized to 10

Vulnerabilities

3 existing vulnerabilities detected

Branch protection

branch protection is not maximal on development and all release branches

Manual code review

-

Secure publishing

-

Signed commits

-

Automated security tools

-

Popular

Used by 1264 open-source projects

Security Policy

security policy file detected

Networking Behavior of gradle/actions/dependency-submission

This GitHub Action often makes outbound network calls to these destinations, as gathered from public workflows using the Harden-Runner GitHub Action. Harden-Runner offers network egress filtering and runtime security for both GitHub-hosted and self-hosted runners.

Popular DestinationUnknown Destination
Network DestinationOwner
api.github.comGitHubGitHub
plugins.gradle.orgGradleGradle
repo.maven.apache.orgUnknown
plugins-artifacts.gradle.orgGradleGradle
services.gradle.orgGradleGradle
github.comGitHubGitHub
objects.githubusercontent.comGitHubGitHub
jcenter.bintray.comUnknown
caffeine.gradle-enterprise.cloudUnknown
raw.githubusercontent.comGitHubGitHub
dl.google.comGoogleGoogle
buf.buildUnknown
download.jetbrains.comUnknown
download-cdn.jetbrains.comUnknown
scans-in.gradle.comUnknown
release-assets.githubusercontent.comGitHubGitHub
us-v20.events.data.microsoft.comMicrosoftMicrosoft
unitedstates.cp.wd.microsoft.comMicrosoftMicrosoft
winatp-gw-cus.microsoft.comMicrosoftMicrosoft
api.foojay.ioUnknown
gist.githubusercontent.comGitHubGitHub
cache-redirector.jetbrains.comUnknown
www.jetbrains.comUnknown
d2cico3c979uwg.cloudfront.netUnknown
d2s4y8xcwt8bet.cloudfront.netUnknown
dtahfujkndrht.cloudfront.netUnknown
packages.jetbrains.teamUnknown
jb.ggUnknown
teamcity.jetbrains.comUnknown
settings-win.data.microsoft.comMicrosoftMicrosoft
incoming.telemetry.mozilla.orgUnknown
ocsp.digicert.comUnknown
telemetry-incoming.r53-2.services.mozilla.comUnknown
fs.microsoft.comMicrosoftMicrosoft
github-package-registry-mirror.gc.nav.noUnknown
maven.pkg.jetbrains.spaceUnknown
packages.confluent.ioUnknown
build.shibboleth.netUnknown
login.live.comUnknown
tas02.sls.update.microsoft.comMicrosoftMicrosoft
www.microsoft.comMicrosoftMicrosoft
fe2cr.update.microsoft.comMicrosoftMicrosoft
download.windowsupdate.comUnknown
geo.prod.do.dsp.mp.microsoft.comMicrosoftMicrosoft
kv801.prod.do.dsp.mp.microsoft.comMicrosoftMicrosoft
cp801.prod.do.dsp.mp.microsoft.comMicrosoftMicrosoft
au.download.windowsupdate.comUnknown
dns.msftncsi.comUnknown
www.jitpack.ioUnknown