Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

actions-cool/maintain-one-comment

actions-cool/maintain-one-comment

📌 Maintain just one comment in Issue and PR by GitHub Action.

4/10
github/codeql-action/autobuild

github/codeql-action/autobuild

Actions for running CodeQL analysis

10/10
anchore/scan-action/download-grype

anchore/scan-action/download-grype

Anchore container analysis and scan provided as a GitHub Action

7/10
MetaMask/action-checkout-and-setup

MetaMask/action-checkout-and-setup

Set up a Node.js environment with a reusable GitHub Action

6/10
haya14busa/action-bumpr

haya14busa/action-bumpr

💥 Bump semantic version tag on merging Pull Requests with specific lables.

4/10
mhausenblas/mkdocs-deploy-gh-pages

mhausenblas/mkdocs-deploy-gh-pages

GitHub Action to deploy an MkDocs site to GitHub Pages

5/10
Git-Hub-Chris/PyTorch/.github/actions/teardown-rocm

Git-Hub-Chris/PyTorch/.github/actions/teardown-rocm

Python package.

4/10
breathingdust/firewatch

breathingdust/firewatch

Github Action which alerts a Slack channel if an issue receives reactions over a specified threshold.

1/10
crazy-max/ghaction-github-labeler

crazy-max/ghaction-github-labeler

GitHub Action to manage labels on GitHub

4/10
cloudposse/github-action-terratest

cloudposse/github-action-terratest

A GitHub action that runs terratest tests within the repo

6/10
chrnorm/deployment-status

chrnorm/deployment-status

GitHub action to create a deployment status update

3/10
Azure/appservice-settings

Azure/appservice-settings

Automate your GitHub workflows using Azure Action for AppService

5/10
fossa-contrib/fossa-action

fossa-contrib/fossa-action

The action sets up and caches the latest release of fossa-cli, infer the correct configuration from the current system state, analyze the project for a list of its dependencies, and upload the results to FOSSA.

6/10
step-security/semver-utils

step-security/semver-utils

One-stop shop for working with semantic versions in your GitHub Actions workflows. Secure drop-in replacement for madhead/semver-utils.

10/10
Maintained by StepSecurity
dawidd6/action-send-mail/_next/static/chunks/48071-70deb82b0cfeb83f.js

dawidd6/action-send-mail/_next/static/chunks/48071-70deb82b0cfeb83f.js

:gear: A GitHub Action to send an email to multiple recipients

4/10
opslayertech/upload-s3-action

opslayertech/upload-s3-action

github action for upload to S3 ☁️

1/10
aerospike/aerospike-client-csharp/.github/actions/build

aerospike/aerospike-client-csharp/.github/actions/build

Aerospike C# Client Library

4/10
OpenZeppelin/openzeppelin-contracts/.github/actions/setup

OpenZeppelin/openzeppelin-contracts/.github/actions/setup

OpenZeppelin Contracts is a library for secure smart contract development.

7/10
actions-security-demo/script-injection/actions/metrics-collector

actions-security-demo/script-injection/actions/metrics-collector

2/10
JamesIves/github-pages-deploy-action

JamesIves/github-pages-deploy-action

🚀 Automatically deploy your project to GitHub Pages using GitHub Actions. This action can be configured to push your production-ready code into any branch you'd like.

8/10