Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/short-sha/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/short-sha/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Github Action to shorten the git SHA1 and make it accessible in outputs. Secure drop-in replacement for benjlevesque/short-sha.

10/10
elide-dev/graal/.github/actions/build-graalvm

elide-dev/graal/.github/actions/build-graalvm

GraalVM: Run Programs Faster Anywhere :rocket:

5/10
vmactions/freebsd-vm

vmactions/freebsd-vm

Use FreeBSD in github actions

6/10
step-security/setup-gh-cli-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/setup-gh-cli-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

A GitHub action that installs or updates the gh CLI. Secure drop-in replacement for sersoft-gmbh/setup-gh-cli-action.

10/10
elastic/oblt-actions/oblt-cli/cluster-credentials

elastic/oblt-actions/oblt-cli/cluster-credentials

7/10
Tsukimarf/typescript-eslint/.github/actions/prepare-build

Tsukimarf/typescript-eslint/.github/actions/prepare-build

:sparkles: Monorepo for all the tooling which enables ESLint to support TypeScript

3/10
accuknox/report-action

accuknox/report-action

Github actions to trigger report generation for runtime security.

3/10
invisirisk/pse-action

invisirisk/pse-action

4/10
JoftheV/pytorch/.github/actions/chown-workspace

JoftheV/pytorch/.github/actions/chown-workspace

Tensors and Dynamic neural networks in Python with strong GPU acceleration

3/10
iflow-ai/iflow-cli-action

iflow-ai/iflow-cli-action

Automate software development tasks within your GitHub repositories with iFlow CLI and AI ecosystem. https://github.com/iflow-ai/iflow-cli

5/10
Vendic/magento2-oh-dear/.github/actions/setup

Vendic/magento2-oh-dear/.github/actions/setup

Oh Dear application checks for Magento 2

2/10
Git-Hub-Chris/VisualStudioCode/actions/commands

Git-Hub-Chris/VisualStudioCode/actions/commands

IDE for Windows, Linux, and macOS.

4/10
tomasreyes/maui/.github/actions/triage-labels

tomasreyes/maui/.github/actions/triage-labels

.NET MAUI is the .NET Multi-platform App UI, a framework for building native device applications spanning mobile, tablet, and desktop.

7/10
pytorch/data/test-infra/.github/actions/export-matrix-variables

pytorch/data/test-infra/.github/actions/export-matrix-variables

A PyTorch repo for data loading and utilities to be shared by the PyTorch domain libraries.

3/10
rapidsai/devcontainers/.github/actions/test-windows-image

rapidsai/devcontainers/.github/actions/test-windows-image

5/10
step-security/slack-github-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/slack-github-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Send data into Slack using this GitHub Action!. Secure drop-in replacement for slackapi/slack-github-action.

10/10
grafana/plugin-actions/bundle-types

grafana/plugin-actions/bundle-types

6/10
actions/attest-sbom

actions/attest-sbom

Action for generating SBOM attestations for workflow artifacts

8/10
pytorch/pytorch/.github/actions/pytest-cache-download

pytorch/pytorch/.github/actions/pytest-cache-download

Tensors and Dynamic neural networks in Python with strong GPU acceleration

6/10
nichmor/minimal-read-yaml

nichmor/minimal-read-yaml

Custom github action used to read yaml files, supporting multiple keys and variable replacements

2/10