Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
step-security/mongodb-github-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Use MongoDB in GitHub Actions
mattallty/jest-github-action
Jest action adding checks with annotations to your pull requests and coverage table as comments
github/codeql-action/upload-sarif
Actions for running CodeQL analysis
Samsung/CredSweeper
CredSweeper is a tool to detect credentials in any directories or files. CredSweeper could help users to detect unwanted exposure of credentials (such as token, passwords, api keys etc.) in advance. By scanning lines, filtering, and using AI model as option, CredSweeper reports lines with possible credentials, where the line is, and expected type o
distroless/actions/apko-build
GitHub actions for the chainguard-images
EPMatt/reviewdog-action-tsc
Run tsc with reviewdog :dog:
grafana/alloy/actions/backport
OpenTelemetry Collector distribution with programmable pipelines
reviewdog/action-nimlint
Run nim check with reviewdog
oxsecurity/megalinter
🦙 MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.
s-weigand/setup-conda
This action adds the `conda` command from the on the worker preinstalled miniconda version to the known shell commands.
tomhjp/gh-action-jira-search
GitHub Action to search for a specific Jira issue with JQL
Mercymeilya/last-workflow-status
Malcolmnixon/Setup-VSTest
Set up your GitHub Actions workflow to add VSTest.Console.exe into the PATH
atlassian/gajira-comment
crazy-max/.github/.github/actions/docker-scout
tor-actions/setup-tor
Set up your GitHub Actions workflow with a specific version of Tor
Azbagheri/shell-linter
A Github Action for ShellCheck
panther-labs/github-asana-action
Github Action to integrate Asana and Github
Mattraks/delete-workflow-runs
An action to delete workflow runs in a repository.
ljharb/actions/node/run
GitHub actions I use for CI.