Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
launchdarkly/dotnet-core/.github/actions/xcode-select
LaunchDarkly monorepo for .NET packages
theupdateframework/tuf-conformance
TUF client conformance test suite
microsoft/ps-rule
Validate infrastructure as code (IaC) and DevOps repositories using GitHub Actions.
oss-review-toolkit/ort-ci-github-action
Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs
wolfi-dev/actions/install-wolfictl
A collection of reusable Github Actions workflows.
ministryofjustice/github-actions/image
A collection of reusable GitHub Actions for the Ministry of Justice, designed to streamline and enhance workflows across our projects. โข This repository is defined and managed in Terraform
step-security/run-windows-docker-container-action/__builder_checkout_dir__/.github/actions/privacy-check
Action to run windows containers. Secure drop-in replacement for philips-software/run-windows-docker-container-action.
msys2/setup-msys2
GitHub Action to setup MSYS2
kishaningithub/setup-python-amazon-linux
setup-python action for amazon linux self hosted runners
stacklet/cloud-custodian-prerelease/.github/composites/docker-build-push
Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources
sormuras/download-jdk
FUP2 https://github.com/oracle-actions/setup-java
step-security/snyk-actions/python-3.10
A set of GitHub actions for checking your projects for vulnerabilities. Secure drop-in replacement for snyk/actions.
tokorom/action-slack-incoming-webhook
GitHub Action for Slack Incoming Webhook
canidae-solutions/lix-quick-install-action
install lix in github actions, really fast
skaut/wordpress-version-checker
A GitHub action to automatically create issues when a plugin "tested up to" version doesn't match the latest WordPress version.
microsoft/onnxruntime-github-actions/build-docker-image
Reusable GitHub Actions for ONNX Runtime repos. The actions are used for constructing ONNX Runtime's public pull request pipelines.
verygoodopensource/very_good_coverage
GitHub Action which helps enforce code coverage threshold using lcov created by Very Good Ventures ๐ฆ
ministryofjustice/devsecops-actions/cruft
A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.
brianpugh/install-micropython
Github Action to install micropython.
yagihash/flutter-fvm-config-action/config
An action that parses an https://github.com/leoafarias/fvm config file into environment variables which can then be used to configure the https://github.com/subosito/flutter-action.