Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
asdf-vm/actions/plugin-test
GitHub Actions for the asdf version manager
step-security/woke-action-reviewdog/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
woke GitHub Action using reviewdog. Secure drop-in replacement for get-woke/woke-action-reviewdog.
step-security/envsubst-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
Github Action for envsubst. Secure drop-in replacement for danielr1996/envsubst-action.
UpsideDownST/cyber-bootstrap
mig4/setup-bats
GitHub Action to setup BATS testing framework
step-security/github-api-commit-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Commits changes to the repository through the Github api instead of traditional git commands. Secure drop-in replacement for grafana/github-api-commit-action.
sbdchd/squawk-action
Github Action for Linting Postgres Migrations with Squawk
elastic/terranova/.github/workflows/env-install
Terranova is a thin wrapper for Terraform that provides extra tools and logic to handle Terraform configurations at scale.
chikin-4x/aws-cloudformation-github-deploy
Deploys AWS CloudFormation Stacks
Vendic/github-extract-task-ids-action
Extract task ids from commit messages, branch and pull request title
step-security/setup-maven
Set up your GitHub Actions workflow with a specific version of Apache Maven. Secure drop-in replacement for stCarolas/setup-maven.
yonasBSD/iggy/.github/actions/csharp-dotnet/post-merge
Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-json/oembed
This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.
actions-security-demo/pytorch/.github/actions/setup-win
Tensors and Dynamic neural networks in Python with strong GPU acceleration
buildjet/cache
Cache dependencies and build outputs in GitHub Actions
ministryofjustice/laa-reusable-github-actions/.github/actions/ecr-auth
A collection of re-useable GitHub actions
OpenZeppelin/openzeppelin-foundry-upgrades/.github/actions/setup
Foundry library for deploying and managing upgradeable contracts
borales/actions-yarn
GitHub Action for interacting with yarn
CatChen/check-git-status-action
Do you check in dependency packages or build artefacts? If yes this GitHub Action helps you ensure they are not out-of-sync.
step-security/git-tag-action
[GitHub Action] Get ${version} from package.json and git tag ${version} for the repository. Secure drop-in replacement for pkgdeps/git-tag-action.