Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

cue-lang/setup-cue

cue-lang/setup-cue

2/10
mridang/action-test-reporter

mridang/action-test-reporter

A flexible GitHub Action that parses code coverage and test result files to generate beautiful, insightful summaries in your workflow.

3/10
thechetantalwar/teams-notify

thechetantalwar/teams-notify

3/10
grafana/mimir-prometheus/.github/promci/actions/save_artifacts

grafana/mimir-prometheus/.github/promci/actions/save_artifacts

7/10
grafana/shared-workflows/_shared-workflows-publish-techdocs/actions/aws-auth

grafana/shared-workflows/_shared-workflows-publish-techdocs/actions/aws-auth

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
WyriHaximus/github-action-wait-for-status

WyriHaximus/github-action-wait-for-status

Github Action that waits for successful commit status

3/10
step-security/publish-unit-test-result-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/publish-unit-test-result-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action to publish unit test results on GitHub. Secure drop-in replacement for EnricoMi/publish-unit-test-result-action.

10/10
coursier/setup-action

coursier/setup-action

▶️ GitHub Action using Coursier to install JVM and Scala tools

6/10
jauderho/dnscontrol-action

jauderho/dnscontrol-action

Deploy your DNS configuration using GitHub Actions with DNSControl.

6/10
Frederick888/gh-ph

Frederick888/gh-ph

`gh-ph` is a GitHub CLI extension and a GitHub Action that puts commit history into your pull request description

4/10
lfreleng-actions/nexus-publish-action

lfreleng-actions/nexus-publish-action

Publishes content to Sonatype Nexus Repository servers

6/10
dev-build-deploy/release-me

dev-build-deploy/release-me

GitHub Release Management

2/10
equinor/ert/.github/actions/install_dependencies_qt

equinor/ert/.github/actions/install_dependencies_qt

ERT - Ensemble based Reservoir Tool - is designed for running ensembles of dynamical models such as reservoir models, in order to do sensitivity analysis and data assimilation. ERT supports data assimilation using the Ensemble Smoother (ES) and Ensemble Smoother with Multiple Data Assimilation (ES-MDA).

8/10
step-security/close-milestone/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/close-milestone/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A Github action to remove a milestone by the milestone's name. Secure drop-in replacement for Akkjon/close-milestone.

10/10
K-Phoen/semver-release-action

K-Phoen/semver-release-action

GitHub Action to automatically create SemVer compliant releases based on PR labels.

3/10
actions-rs/install

actions-rs/install

⏩ GitHub Action for a faster binary crates installation

3/10
NVIDIA/spark-rapids-common/pr-description-check

NVIDIA/spark-rapids-common/pr-description-check

Reusable GitHub Actions workflows and common scripts for Spark RAPIDS

4/10
hoprnet/hopr-workflows/actions/publish-artifact

hoprnet/hopr-workflows/actions/publish-artifact

GitHub workflows helping HOPR automate tasks via actions

3/10
erlef/setup-beam

erlef/setup-beam

Set up your BEAM-based GitHub Actions workflow (Erlang, Elixir, Gleam, ...)

7/10
google-github-actions/get-secretmanager-secrets

google-github-actions/get-secretmanager-secrets

A GitHub Action for accessing secrets from Google Secret Manager and making them available as outputs.

6/10