Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
step-security/foundry-toolchain
GitHub action to install Foundry. Secure drop-in replacement for foundry-rs/foundry-toolchain.
bit-tasks/branch-lane
Bit lane for each branch task for CI/CD
spack/setup-spack
Github Action to setup Spack
step-security/r-lib-actions/setup-r
GitHub Actions for the R community. Secure drop-in replacement for r-lib/actions.
hashicorp/terraform-github-actions
Terraform GitHub Actions
angular/dev-infra/github-actions/google-internal-tests
Angular Development Infrastructure
elastic/oblt-actions/oblt-cli/cluster-create-serverless
russdias/render-deploy
OpenZeppelin/openzeppelin-contracts-upgradeable/.github/actions/setup
Upgradeable variant of OpenZeppelin Contracts, meant for use in upgradeable contracts.
the-actions-org/workflow-dispatch
A GitHub Action for triggering workflows, using the `workflow_dispatch` event
dawidd6/action-send-mail/_next/static/chunks/67196-334b3c00fb863909.js
:gear: A GitHub Action to send an email to multiple recipients
step-security/sticky-pull-request-comment/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Create comment on pull request, if exists update that comment. Secure drop-in replacement for marocchino/sticky-pull-request-comment.
vegardit/fast-apt-mirror.sh
fast-apt-mirror.sh is a self-contained Bash script that helps you to easily and quickly determine and configure a fast APT repository mirror on Debian, Ubuntu and Pop!_OS systems.
paultyng/ghaction-import-gpg
:octocat: GitHub Action to easily import a GPG key
pguyot/arm-runner-action
Run tests natively and build images directly from GitHub Actions using a chroot-based virtualized Raspberry Pi (raspios/raspbian) environment
gradle/gradle-enterprise-build-validation-scripts/.github/actions/gradle/experiment-1
Executable scripts to assist in validating that your Gradle and Maven builds are in an optimal state in terms of maximizing work avoidance when using Develocity.
chainguard-images/actions/scan-apk
GitHub actions for the chainguard-images
gnosis/cla-github-action
CLA Assistant GitHub Action
microsoft/PR-Metrics
A GitHub Action & Azure Pipelines task for augmenting pull request titles to let reviewers quickly determine PR size and test coverage.
zephyrproject-rtos/action-s3-cache
Cache dependencies and build outputs to S3