Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

foundry-rs/foundry-toolchain

foundry-rs/foundry-toolchain

GitHub action to install Foundry

5/10
reugn/github-action-aerospike

reugn/github-action-aerospike

GitHub Action to set up an Aerospike database

4/10
step-security/secrets-sync-action

step-security/secrets-sync-action

A Github Action that can sync secrets from one repository to many others. Secure drop-in replacement for jpoehnelt/secrets-sync-action.

10/10
Maintained by StepSecurity
primait/setup-yq

primait/setup-yq

5/10
microsoft/variable-substitution

microsoft/variable-substitution

Enable GitHub developers to parameterize the values in their config files from a GitHub Action workflow

5/10
peter-evans/close-issue

peter-evans/close-issue

A GitHub action to close an issue

5/10
elastic/cloudbeat/.github/actions/slack-notification

elastic/cloudbeat/.github/actions/slack-notification

Analyzing Cloud Security Posture

6/10
veracode/Veracode-pipeline-scan-action

veracode/Veracode-pipeline-scan-action

Veracode Pipeline-Scan GitHub Action

4/10
kirillplatonov/action-standard

kirillplatonov/action-standard

Run Standard Ruby with Reviewdog 🐶

3/10
dagster-io/dagster-cloud-action/actions/utils/parse_workspace

dagster-io/dagster-cloud-action/actions/utils/parse_workspace

5/10
NVIDIA/cccl/.github/actions/version-update

NVIDIA/cccl/.github/actions/version-update

CUDA Core Compute Libraries

8/10
open-policy-agent/setup-opa

open-policy-agent/setup-opa

Sets up Open Policy Agent CLI in your GitHub Actions workflow.

4/10
josStorer/get-current-time

josStorer/get-current-time

This action sets the current ISO8601 time to the time output and also provides readableTime, formattedTime, and many more digital outputs like year, day, second, etc. Useful for setting build times in subsequent steps, renaming your artifact, or keeping the same recorded time for the entire workflow.

3/10
koj-co/release-scheduler

koj-co/release-scheduler

🚂 Schedule a weekly or monthly Semantic Release

3/10
rubenesp87/semver-validation-action

rubenesp87/semver-validation-action

SEMVER validation Github Action

3/10
nam20485/docs-1/.github/actions/clone-translations

nam20485/docs-1/.github/actions/clone-translations

The open-source repo for docs.github.com

2/10
sgammon/verify-hashes

sgammon/verify-hashes

Library, CLI, and GitHub Action for verifying hashes

4/10
step-security/test-summary-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/test-summary-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Show a helpful summary of test results in GitHub Actions CI/CD workflow runs. Secure drop-in replacement for test-summary/action.

10/10
ZscalerCWP/Zscaler-IaC-Action

ZscalerCWP/Zscaler-IaC-Action

1/10
42Crunch/api-security-audit-action

42Crunch/api-security-audit-action

6/10