Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
launchdarkly/dotnet-sdk-internal/.github/actions/ci
Implementation details shared between .NET SDK and Xamarin SDK
egibs/actions/setup-registry
A collection of reusable Github Actions workflows.
peter-evans/create-pull-request
A GitHub action to create a pull request for changes to your repository in the actions workspace
actions-rust-lang/audit
Audit Rust Dependencies using the RustSec Advisory DB
believer-oss/rust-cache
A GitHub Action that implements smart caching for rust/cargo projects
kong/wasmtime/.github/actions/github-release
Standalone JIT-style runtime for WebAssembly, using Cranelift
yonasbsd/wazuh-kubernetes/.github/actions/setup_artifacts
Wazuh - Wazuh Kubernetes
slsa-framework/slsa-github-generator/.github/actions/compute-sha256
Language-agnostic SLSA provenance generation for Github Actions
snyk/release-notes-preview
GitHub Action for providing release notes preview for semantic releases
joelwmale/webhook-action
Posts data to an endpoint on any event
azure/bicep-deploy
Azure Deploy GitHub Action
sasobadovinac/occt/.github/actions/run-tests
Open CASCADE Technology (OCCT) is an open-source software development platform for 3D CAD, CAM, CAE. This is a clone of the official repository located on https://dev.opencascade.org/. Please use official development portal for registering issues and providing patches.
actionutils/create-release-pr/__builder_checkout_dir__/.github/actions/privacy-check
WIP
isaac-sim/isaaclab/.github/actions/combine-results
Unified framework for robot learning built on NVIDIA Isaac Sim
cloudposse/github-action-matrix-outputs-write
Workaround implementation - Write matrix jobs outputs
togethercomputer/diffusers/.github/actions/setup-miniconda
๐ค Diffusers: State-of-the-art diffusion models for image and audio generation in PyTorch
igorjs/gh-actions-clean-workflow
Clean workflow run logs based on configuration
ministryofjustice/hmpps-github-shared-actions/.github/actions/slack_codescan_notification
Shared actions for Github workflows to use - PUT NO WORKFLOWS IN HERE! (bootstrapped 2026-03-30)
sonarsource/sonarqube-ide-visualstudio-roslyn/.actions/get-build-number
Plugin using the Plugin API to allow Roslyn integration between SonarQube for Visual Studio and SLCore..
grafana/community-contributions/.github/actions/setup-enterprise
External contributor PR workflow testing sandbox