Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

Kong/setup-deck

Kong/setup-deck

Make decK available in your GitHub Actions workflows

2/10
EnricoMi/publish-unit-test-result-action/macos

EnricoMi/publish-unit-test-result-action/macos

GitHub Action to publish unit test results on GitHub

4/10
jbajic/buildifier

jbajic/buildifier

GitHub action for running Bazel's format tool buildifier.

4/10
burnett01/rsync-deployments

burnett01/rsync-deployments

GitHub Action for deploying code via rsync over ssh

8/10
step-security/proof-html

step-security/proof-html

A GitHub Action to validate HTML, check links, and more ✅. Secure drop-in replacement for anishathalye/proof-html.

10/10
Maintained by StepSecurity
step-security/gh-actions-lua

step-security/gh-actions-lua

GitHub action for Lua/LuaJIT. Secure drop-in replacement for leafo/gh-actions-lua.

10/10
Maintained by StepSecurity
reviewdog/reviewdog

reviewdog/reviewdog

🐶 Automated code review tool integrated with any code analysis tools regardless of programming language

6/10
googleapis/release-please

googleapis/release-please

generate release PRs based on the conventionalcommits.org spec

9/10
github/codeql-action/start-proxy

github/codeql-action/start-proxy

Actions for running CodeQL analysis

8/10
extractions/setup-crate

extractions/setup-crate

📦 GitHub Action to install a Rust crate from a GitHub release

2/10
step-security/docs-as-code-confluence

step-security/docs-as-code-confluence

Publish the content of a folder to confluence Github Action. Secure drop-in replacement for Bhacaz/docs-as-code-confluence.

10/10
Maintained by StepSecurity
OpenZeppelin/stellar-upgrader-cli/.github/actions/prepare

OpenZeppelin/stellar-upgrader-cli/.github/actions/prepare

CLI that help developers to upgrade stellar contracts

4/10
microsoft/powerplatform-actions/branch-solution

microsoft/powerplatform-actions/branch-solution

Power Platform GitHub Actions automate common build and deployment tasks related to Power Platform. This includes synchronization of solution metadata (a.k.a. solutions) between development environments and source control, generating build artifacts, deploying to downstream environments, provisioning/de-provisioning of environments, and the ability to perform static analysis checks against your solution using the PowerApps checker service.

5/10
mcblair/configure-aws-profile-action

mcblair/configure-aws-profile-action

2/10
naveenrajm7/rpmbuild

naveenrajm7/rpmbuild

A GitHub Action to build RPMs from source code and spec file, uses rpmbuild .

4/10
coveo/cli/.github/actions/e2e-clean

coveo/cli/.github/actions/e2e-clean

A command-line interface to interact with the Coveo platform and quickly create Coveo Headless-powered search pages with Angular, React or Vue.js.

4/10
utilitywarehouse/actions-go/setup

utilitywarehouse/actions-go/setup

Github Action for installing Go and common configuration

3/10
tj-actions/setup-bin

tj-actions/setup-bin

:octocat: Github action to download and install release artifacts for Golang and Rust

4/10
pascalgn/automerge-action

pascalgn/automerge-action

GitHub action to automatically merge pull requests that are ready

3/10
legoktm/gh-action-dput

legoktm/gh-action-dput

3/10