Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

super-linter/super-linter/slim

super-linter/super-linter/slim

Combination of multiple linters to run as a GitHub Action or standalone

9/10
JoftheV/workers-sdk/.github/actions/install-dependencies

JoftheV/workers-sdk/.github/actions/install-dependencies

⛅️ Home to Wrangler, the CLI for Cloudflare Workers®

4/10
step-security/ghaction-import-gpg/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/ghaction-import-gpg/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action to import a GPG key. Secure drop-in replacement for crazy-max/ghaction-import-gpg.

10/10
golangci/golangci-lint-action

golangci/golangci-lint-action

Official GitHub Action for golangci-lint from its authors

9/10
advanced-security/sarif-toolkit/relativepaths

advanced-security/sarif-toolkit/relativepaths

All things SARIF, as an Action

7/10
elastic/elastic-otel-python/.github/actions/env-install

elastic/elastic-otel-python/.github/actions/env-install

8/10
coveo/ui-kit/.github/actions/e2e-atomic-screenshots

coveo/ui-kit/.github/actions/e2e-atomic-screenshots

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
gagoar/invoke-aws-lambda

gagoar/invoke-aws-lambda

GitHub action to invoke AWS lambda

3/10
nais/deploy/actions/deploy

nais/deploy/actions/deploy

Nais deploy: multi-cluster Kubernetes deployments

6/10
wei/git-sync

wei/git-sync

🔃 A GitHub Action for syncing between two independent repositories using force push

3/10
pytorch/tensordict/test-infra/.github/actions/setup-miniconda

pytorch/tensordict/test-infra/.github/actions/setup-miniconda

TensorDict is a pytorch dedicated tensor container.

3/10
Nullify-Platform/dast-action

Nullify-Platform/dast-action

GitHub Action for Nullify DAST

5/10
google-github-actions/setup-gcloud

google-github-actions/setup-gcloud

A GitHub Action for installing and configuring the gcloud CLI.

7/10
nackerman-nydig/hadolint-action

nackerman-nydig/hadolint-action

GitHub action for Hadolint, A Dockerfile linting tool

3/10
coveooss/snapshots-github-actions/.github/actions/deploy

coveooss/snapshots-github-actions/.github/actions/deploy

An example of how-to manage your Coveo Organization with Code, GHA, and the Coveo CLI

3/10
pytorch/test-infra/test-infra/.github/actions/setup-ssh

pytorch/test-infra/test-infra/.github/actions/setup-ssh

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
chetan/invalidate-cloudfront-action

chetan/invalidate-cloudfront-action

Invalidate AWS CloudFront distribution paths

5/10
apache/skywalking-eyes/header

apache/skywalking-eyes/header

A full-featured license tool to check and fix license headers and resolve dependencies' licenses.

6/10
axiomhq/annotation-action

axiomhq/annotation-action

This action allows you to create an annotation in Axiom.

3/10
chronograph-pe/git-auto-commit-action

chronograph-pe/git-auto-commit-action

Automatically Commit changed Files back to GitHub with GitHub Actions for the 80% use case.

3/10