Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
sasobadovinac/occt/.github/actions/setup-ubuntu-deps
Open CASCADE Technology (OCCT) is an open-source software development platform for 3D CAD, CAM, CAE. This is a clone of the official repository located on https://dev.opencascade.org/. Please use official development portal for registering issues and providing patches.
tespkg/actions-cache/save
Cache to S3 storage with official actions/cache@v5 fallback
quarto-dev/quarto-actions/publish
cachix/cachix-action
Build software only once and put it in a global cache
christophebedard/dco-check
Simple DCO check script to be used in any CI
digital-ai/query-tag-action
A GitHub Action allowing users to query tags via git describe.
step-security/tj-actions-glob
:octocat: Github action to match glob patterns with support for matching deleted files. Secure drop-in replacement for tj-actions/glob.
step-security/trinodb-github-actions/slash-command-dispatch
Github actions used in the Trino project. Secure drop-in replacement for trinodb/github-actions.
jmertic/slack-release-notifier
facebook/sapp-action
GitHub Action for SAPP
elastic/apm-agent-android/.github/actions/setup
Elastic APM Android Agent
fumeapp/action
Deploy with fume directly from Github Actions
envoyproxy/toolshed/actions/github/checkout
yonasbsd/testcontainers-node/.github/actions/rancher-desktop-setup
Testcontainers is a NodeJS library that supports tests, providing lightweight, throwaway instances of common databases, Selenium web browsers, or anything else that can run in a Docker container.
mikehardy/buildcache-action
GitHub Action to install and configure buildcache for faster compilation
qodo-ai/pr-agent
๐ PR Agent: The Original Open-Source PR Reviewer. This project It is not the Qodo free tier.
lhotari/action-upterm
Debug your GitHub Actions via SSH by using upterm/tmux to get access to the runner system itself.
crystal-lang/install-crystal
GitHub Action: Install Crystal programming language
yonasbsd/libsignal/.github/actions/restore-cargo-cache
Home to the Signal Protocol as well as other cryptographic primitives which make Signal possible.
step-security/actions-rs-toolchain
๐ ๏ธ GitHub Action for `rustup` commands. Secure drop-in replacement for actions-rs/toolchain.