Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

jetli/wasm-pack-action

jetli/wasm-pack-action

Install `wasm-pack` by downloading the executable

3/10
bit-tasks/pull-request

bit-tasks/pull-request

Build pull request and update lane task for CI/CD

0/10
org-deacc-sec/no-secrets-here/.github/actions/safe-action

org-deacc-sec/no-secrets-here/.github/actions/safe-action

Empty Repo

2/10
grafana/writers-toolkit/vale-action

grafana/writers-toolkit/vale-action

Technical documentation guidelines for Grafana Labs documentation

7/10
harden-runner-canary/caffeine/.github/actions/run-gradle

harden-runner-canary/caffeine/.github/actions/run-gradle

A high performance caching library for Java

4/10
github/contributors

github/contributors

GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.

7/10
uncenter/setup-taplo

uncenter/setup-taplo

Setup Taplo in GitHub Actions.

3/10
action-pack/tag-exists

action-pack/tag-exists

Action to determine if a tag exists.

4/10
DependencyTrack/gh-upload-sbom

DependencyTrack/gh-upload-sbom

Publishes BOMs to Dependency-Track from GitHub Actions

3/10
grafana/shared-workflows/_shared-workflows-check-drone-signature/actions/get-vault-secrets

grafana/shared-workflows/_shared-workflows-check-drone-signature/actions/get-vault-secrets

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
docker/setup-compose-action

docker/setup-compose-action

GitHub Action to set up Docker Compose

5/10
upciti/wakemeops-action

upciti/wakemeops-action

Github Action for WakeMeOps

4/10
step-security/retry/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/retry/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Retries a GitHub Action step on failure or timeout. Secure drop-in replacement for nick-fields/retry.

10/10
rjdbcm/ozi-checkpoint

rjdbcm/ozi-checkpoint

OZI action - run dist, test, and lint checks; procure signed test log artifacts

7/10
roots/issue-closer-action

roots/issue-closer-action

GitHub action to automatically close issues/PRs that don't match a regexp

4/10
jmuelbert/jmbde-QT/.github/actions/setup_cache

jmuelbert/jmbde-QT/.github/actions/setup_cache

A program to collect the resources of a company in a database. These are computers, printers, phones and more.

4/10
lfreleng-actions/chartmuseum-action

lfreleng-actions/chartmuseum-action

Starts and runs a ChartMuseum Helm Chart repository/docker container

6/10
fscarmen/warp-on-actions

fscarmen/warp-on-actions

Install Cloudflare WARP on Github actions.

2/10
milhy545/coder/.github/actions/setup-go-tools

milhy545/coder/.github/actions/setup-go-tools

Secure environments for developers and their agents

4/10
ericcornelissen/tool-versions-update-action

ericcornelissen/tool-versions-update-action

A GitHub Action to automatically update the tools in your .tool-versions file

7/10