r-lib/actions/setup-r-dependencies

r-lib/actions/setup-r-dependencies

GitHub Actions for the R community

GitHubGitHub Repository

1039 stars

Composite

Maintained action available

Score updated 3 days ago

Composite Action Details

Pinnable

No

GitHub Actions security score

r-lib/actions/setup-r-dependencies

Score

9/10

License

Creative Commons Zero v1.0 Universal

Maintained

3 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 7

Vulnerabilities

6 existing vulnerabilities detected

Branch protection

Branch protection is maximal on development and all release branches

Manual code review

-

Secure publishing

-

Signed commits

-

Automated security tools

-

Popular

Used by 3880 open-source projects

Security Policy

security policy file detected

Networking Behavior of r-lib/actions/setup-r-dependencies

This GitHub Action often makes outbound network calls to these destinations, as gathered from public workflows using the Harden-Runner GitHub Action. Harden-Runner offers network egress filtering and runtime security for both GitHub-hosted and self-hosted runners.

Popular DestinationUnknown Destination
Network DestinationOwner
r-lib.github.ioUnknown
github.comGitHubGitHub
bioconductor.orgUnknown
cran.rstudio.comUnknown
cran.r-pkg.orgUnknown
raw.githubusercontent.comGitHubGitHub
ppa.launchpadcontent.netUnknown
packages.microsoft.comMicrosoftMicrosoft
azure.archive.ubuntu.comUbuntuUbuntu
esm.ubuntu.comUbuntuUbuntu
packagemanager.posit.coUnknown
rspm-sync.rstudio.comUnknown
cloud.r-project.orgUnknown
mghp.osn.xsede.orgUnknown
api.github.comGitHubGitHub
release-assets.githubusercontent.comGitHubGitHub
quarto.orgUnknown
_http._tcp.azure.archive.ubuntu.comUbuntuUbuntu
_https._tcp.packages.microsoft.comMicrosoftMicrosoft
_https._tcp.esm.ubuntu.comUbuntuUbuntu