Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/gha-repo-manager/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/gha-repo-manager/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Manage your Github repo(s) settings and secrets using Github Actions and a yaml file. Secure drop-in replacement for andrewthetechie/gha-repo-manager.

10/10
DIVD-NL/cna-bot

DIVD-NL/cna-bot

GitHub action to validate and submit CVE entries using cvelib, cvelint and cve service.

6/10
quotidian-ennui/actions-olio/commit-status-and-label

quotidian-ennui/actions-olio/commit-status-and-label

It's a gallimaufry of actions

6/10
step-security/prisma-cloud-scan/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/prisma-cloud-scan/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

GitHub action to scan container images with Palo Alto Networks' Prisma Cloud. Secure drop-in replacement for PaloAltoNetworks/prisma-cloud-scan.

10/10
microsoft/setup-kiota

microsoft/setup-kiota

Action that installs Kiota OpenAPI client generator so it can be used in your workflow

6/10
easingthemes/ssh-deploy

easingthemes/ssh-deploy

GitHub Action for deploying code via rsync over ssh. (with NodeJS)

4/10
grafana/community-contributions/.github/actions/check-jobs

grafana/community-contributions/.github/actions/check-jobs

External contributor PR workflow testing sandbox

4/10
architect/action-build

architect/action-build

3/10
aerospike/aerospike-client-java/.github/actions/build-and-test

aerospike/aerospike-client-java/.github/actions/build-and-test

Aerospike Java Client Library

5/10
step-security/npm-get-version-action

step-security/npm-get-version-action

This Action scans for a package.json file and reads the version number from that. Secure drop-in replacement for martinbeentjes/npm-get-version-action.

10/10
Maintained by StepSecurity
azure/aci-deploy

azure/aci-deploy

Enable GitHub developers to deploy to Azure Container Instances using GitHub Actions

4/10
Kong/kong-license

Kong/kong-license

Kong Inc internal script to manage your local test license

3/10
olympix/integrated-security

olympix/integrated-security

Perform code analysis to detect potentially dangerous vulnerabilities

4/10
Reality2byte/docs/.github/actions/warmup-remotejson-cache

Reality2byte/docs/.github/actions/warmup-remotejson-cache

The open-source repo for docs.github.com

4/10
pytorch/pytorch.github.io/test-infra/.github/actions/setup-miniconda

pytorch/pytorch.github.io/test-infra/.github/actions/setup-miniconda

The website for PyTorch

3/10
sysdiglabs/benchmark-dockerfile

sysdiglabs/benchmark-dockerfile

Github action to benchmark dockerfiles in github repository.

4/10
creachadair/go-presubmit-action

creachadair/go-presubmit-action

A GitHub Action to perform presubmit checks on Go code.

3/10
actionsflow/actionsflow-action

actionsflow/actionsflow-action

Actionsflow action for github

1/10
protocolbuffers/protobuf-ci/composer-setup

protocolbuffers/protobuf-ci/composer-setup

A shared repository for Protobuf CI actions

5/10
anz-bank/golden-retriever/.github/action/github-tag-action

anz-bank/golden-retriever/.github/action/github-tag-action

Retrieve content from remote git repositories

0/10