Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

JetBrains/writerside-github-action

JetBrains/writerside-github-action

Writerside curated GitHub Action used to generate the documentation website using JetBrains Writerside

5/10
nubificus/git-trailers

nubificus/git-trailers

Action to parse a PR branch/info and add `git trailers` to persist PR metadata history in the commit messages.

3/10
CordEngine/.github/actions/security

CordEngine/.github/actions/security

7/10
snok/container-retention-policy

snok/container-retention-policy

GitHub action for pruning old GHCR container image versions.

6/10
xqlym5/continuous-integration/actions/update-lockfile

xqlym5/continuous-integration/actions/update-lockfile

Bazel's Continuous Integration Setup

3/10
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-content/uploads/2017/07/may-and-soldier.jpg

step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-content/uploads/2017/07/may-and-soldier.jpg

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
Vendic/magento2-checkout-newsletter-subscription/.github/actions/setup

Vendic/magento2-checkout-newsletter-subscription/.github/actions/setup

The magento2 module adds a newsletter subscription checkbox to the default checkout sidebar.

2/10
celestiaorg/.github/.github/actions/markdown-lint

celestiaorg/.github/.github/actions/markdown-lint

6/10
thomasjpfan/labeler

thomasjpfan/labeler

An action for automatically labelling pull requests

2/10
swinton/commit

swinton/commit

✅ GitHub Action to create verified commits

2/10
grafana/prometheus-alertmanager/.github/promci/actions/publish_release

grafana/prometheus-alertmanager/.github/promci/actions/publish_release

Prometheus Alertmanager

4/10
jpoehnelt/secrets-sync-action

jpoehnelt/secrets-sync-action

A Github Action that can sync secrets from one repository to many others.

2/10
chainguard-forks/ingress-nginx/.github/actions/mkdocs

chainguard-forks/ingress-nginx/.github/actions/mkdocs

Ingress NGINX Controller for Kubernetes

5/10
panva/DefinitelyTyped/.github/actions/setup-for-scripts

panva/DefinitelyTyped/.github/actions/setup-for-scripts

The repository for high quality TypeScript type definitions.

5/10
tbowman01/electron-builder/.github/actions/pretest

tbowman01/electron-builder/.github/actions/pretest

A complete solution to package and build a ready for distribution Electron app with “auto update” support out of the box

2/10
aig787/cargo-udeps-action

aig787/cargo-udeps-action

2/10
avsm/setup-ocaml

avsm/setup-ocaml

GitHub Action for the OCaml programming language

8/10
Reality2byte/codeql-action/../action/upload-sarif

Reality2byte/codeql-action/../action/upload-sarif

Actions for running CodeQL analysis

6/10
sredevopsorg/opentf/.github/actions/go-version

sredevopsorg/opentf/.github/actions/go-version

OpenTF lets you declaratively manage your cloud infrastructure.

3/10
actions-rust-lang/setup-rust-toolchain

actions-rust-lang/setup-rust-toolchain

Setup a specific Rust toolchain with extra features like problem matchers

7/10