Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
ljharb/actions/bun/install
GitHub actions I use for CI.
dustico/dusti-lock
DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.
dmptrluke/django-cjswidget/.github/.tmp/.generated-actions/run-pypi-publish-in-docker-container
A replacement for the Select widget with fancy new features - powered by choices.js!
projectdiscovery/actions/setup/nuclei
ProjectDiscovery's Composite Actions
liri-infra/qmllint-action
:heavy_plus_sign: Validates QML and JavaScript files
asdf-vm/actions/plugin-test
GitHub Actions for the asdf version manager
mig4/setup-bats
GitHub Action to setup BATS testing framework
sbdchd/squawk-action
Github Action for Linting Postgres Migrations with Squawk
elastic/terranova/.github/workflows/env-install
Terranova is a thin wrapper for Terraform that provides extra tools and logic to handle Terraform configurations at scale.
chikin-4x/aws-cloudformation-github-deploy
Deploys AWS CloudFormation Stacks
step-security/setup-maven
Set up your GitHub Actions workflow with a specific version of Apache Maven. Secure drop-in replacement for stCarolas/setup-maven.
actions-security-demo/pytorch/.github/actions/setup-win
Tensors and Dynamic neural networks in Python with strong GPU acceleration
nvlabs/warpconvnet/.github/.tmp/.generated-actions/run-pypi-publish-in-docker-container
Make your wildest 3D ConvNet dream architectures come true
buildjet/cache
Cache dependencies and build outputs in GitHub Actions
ministryofjustice/laa-reusable-github-actions/.github/actions/ecr-auth
A collection of re-useable GitHub actions
step-security/import-codesign-certs/__builder_checkout_dir__/.github/actions/secure-download-artifact
GitHub Action for Importing Code-signing Certificates into a Keychain. Secure drop-in replacement for Apple-Actions/import-codesign-certs.
louisbrunner/checks-action
GitHub Action which wraps calls to GitHub Checks API
step-security/git-tag-action
[GitHub Action] Get ${version} from package.json and git tag ${version} for the repository. Secure drop-in replacement for pkgdeps/git-tag-action.
enricomi/publish-unit-test-result-action/windows/bash
GitHub Action to publish unit test results on GitHub
step-security/gh-setup
:octocat: Setup asset of Github releases. Secure drop-in replacement for k1LoW/gh-setup.