Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

distroless/actions/apko-snapshot

distroless/actions/apko-snapshot

GitHub actions for the chainguard-images

8/10
potiuk/get-workflow-origin

potiuk/get-workflow-origin

Action that provides information about the origin of the workflow run

4/10
hashicorp/tfc-workflows-github/actions/upload-configuration

hashicorp/tfc-workflows-github/actions/upload-configuration

HCP Terraform starter workflows and github actions to automate Terraform Cloud CI/CD pipelines.

7/10
gautamkrishnar/blog-post-workflow

gautamkrishnar/blog-post-workflow

Show your latest blog posts from any sources or StackOverflow activity or Youtube Videos on your GitHub profile/project readme automatically using the RSS feed

7/10
os-climate/osc-github-devops/.github/actions/tox-parse-stanza-action

os-climate/osc-github-devops/.github/actions/tox-parse-stanza-action

Template Python project, common tests, GitHub Actions/Workflows, linting tools

5/10
broadsage/containers/.github/actions/discover-containers

broadsage/containers/.github/actions/discover-containers

Primary source of truth for the Broadsage Container Images

5/10
azure/az-cli

azure/az-cli

Automate your GitHub workflows using Azure CLI scripts

6/10
containerbase/internal-tools/setup

containerbase/internal-tools/setup

Renovate internal build tools

7/10
pytorch/captum/test-infra/.github/actions/setup-nvidia

pytorch/captum/test-infra/.github/actions/setup-nvidia

Model interpretability and understanding for PyTorch

3/10
chains-project/maven-lockfile/.github/actions/ghasum

chains-project/maven-lockfile/.github/actions/ghasum

Lockfiles for Maven. Pin your dependencies. Build with integrity.

5/10
lfreleng-actions/repository-metadata-action

lfreleng-actions/repository-metadata-action

Gathers metadata about the Github repository for use in other actions

4/10
GrantBirki/json-yaml-validate

GrantBirki/json-yaml-validate

A GitHub Action to quickly validate JSON and YAML files in a repository

6/10
step-security/mozilla-sops-action

step-security/mozilla-sops-action

GitHub Action for installing Sops. Secure drop-in replacement for mdgreenwald/mozilla-sops-action.

10/10
Maintained by StepSecurity
milhy545/coder/.github/actions/setup-tf

milhy545/coder/.github/actions/setup-tf

Secure environments for developers and their agents

4/10
deriv-com/translations/.github/actions/extract_and_sync_translations

deriv-com/translations/.github/actions/extract_and_sync_translations

Deriv Translations NPM package

2/10
grafana/tanka/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/tanka/_shared-workflows-dockerhub-login/actions/get-vault-secrets

Flexible, reusable and concise configuration for Kubernetes

7/10
circlefin/buidl-wallet-contracts/.github/actions/setup

circlefin/buidl-wallet-contracts/.github/actions/setup

Official repository for all buidl wallet contracts

4/10
vision-web3/ci-workflows/.github/actions/install-python-deps

vision-web3/ci-workflows/.github/actions/install-python-deps

3/10
allenevans/set-env

allenevans/set-env

Programmatically set github action global environment variables that can be used in subsequent steps

4/10
chainguard-dev/melange/.github/actions/setup-bubblewrap

chainguard-dev/melange/.github/actions/setup-bubblewrap

build APKs from source code

8/10