Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

upbound/up-project-action

upbound/up-project-action

2/10
redhat-actions/podman-login

redhat-actions/podman-login

GitHub Action to log into a container image registry. For use with podman, buildah, and skopeo.

6/10
cbrgm/mastodon-github-action

cbrgm/mastodon-github-action

Use this Action to send a toot (message) from a GitHub actions workflow to Mastodon.

6/10
swiftwasm/swiftwasm-action

swiftwasm/swiftwasm-action

GitHub Action with SwiftWasm toolchain and SDK preinstalled

3/10
NVIDIA/nautobot-app-consumables/.github/actions/poetry

NVIDIA/nautobot-app-consumables/.github/actions/poetry

Consumables Tracking for Nautobot.

4/10
JoshuaKGoldberg/release-it-action

JoshuaKGoldberg/release-it-action

Runs release-it as a GitHub Action, with handling for semantic releases and protected branches. 📤

7/10
pytorch/test-infra/.github/actions/cleanup-runner

pytorch/test-infra/.github/actions/cleanup-runner

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
pantos-io/ci-workflows/.github/actions/install-poetry

pantos-io/ci-workflows/.github/actions/install-poetry

Collection of CI actions used by Pantos

4/10
step-security/publish-crates/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/publish-crates/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub action to get easy publishing of Rust crates. Secure drop-in replacement for katyo/publish-crates.

10/10
bytemare/actions/codecov

bytemare/actions/codecov

A collection of hardened reusable Github Actions and Workflows.

7/10
nucleos/auto-merge-action

nucleos/auto-merge-action

🤖 Automerge labeled GitHub Pull Requests.

3/10
neondatabase/fast-forward

neondatabase/fast-forward

Fast forward pull requests.

3/10
bflad/action-milestone-comment

bflad/action-milestone-comment

GitHub Action to Comment on Milestone Issues and Pull Requests

3/10
crazy-max/ghaction-github-status

crazy-max/ghaction-github-status

GitHub Action to check GitHub Status in your workflow

3/10
step-security/workflow-conclusion-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/workflow-conclusion-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub action to get workflow conclusion. Secure drop-in replacement for technote-space/workflow-conclusion-action.

10/10
JamesSingleton/is-organization-member

JamesSingleton/is-organization-member

GitHub Action to check if someone is part of a GitHub organization.

3/10
mattdavis0351/actions/docker-gpr

mattdavis0351/actions/docker-gpr

Repo to develop and use GitHub Actions

1/10
boostsecurityio/poutine

boostsecurityio/poutine

boostsecurityio/poutine

8/10
sigstore/sigstore-conformance

sigstore/sigstore-conformance

Conformance testing for Sigstore clients

7/10
grafana/prometheus/.github/promci/actions/check_proto

grafana/prometheus/.github/promci/actions/check_proto

The Prometheus monitoring system and time series database.

5/10