Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
actions/upload-release-asset
An Action to upload a release asset via the GitHub Release API
peter-evans/dockerhub-description
A GitHub action to update a Docker Hub repository description from README.md
yonasBSD/turbo/.github/actions/setup-capnproto
Incremental bundler and build system optimized for JavaScript and TypeScript, written in Rust.
tbowman01/Soc-2-compliance
Dargon789/coinbase-smartcontracts/.github/actions/setup-node
coinbase ethereum smartcontracts deploy dapp hardhat foundry remixproject & tenderly verify contract uniswap 1inch defi dex token
yonasBSD/slint/.github/actions/codesign
Slint is an open-source declarative GUI toolkit to build native user interfaces for Rust, C++, JavaScript, or Python apps.
bazel-contrib/setup-bazel
GitHub Action to configure Bazel
grafana/grafana-github-actions-go/bump-release
Grafana GitHub Actions in Golang
pytorch/pytorch.github.io/test-infra/.github/actions/export-matrix-variables
The website for PyTorch
NVIDIA/JAX-Toolbox/.github/actions/gke-xpk
JAX-Toolbox
Tsukimarf/docs/.github/actions/retry-command
The open-source repo for docs.github.com
lcarva/review-rot-action/run
GitHub actions for review-rot
ministryofjustice/hmpps-community-payback-ui/.github/actions/slack_failure_notification
UI for community payback (bootstrapped 2025-08-15)
NVIDIA/kata-containers/.github/cargo-deny-composite-action
Kata containers is an implementation of lightweight Virtual Machines (VMs) that feel and perform like containers, but provide the workload isolation and security advantages of VMs.
suzuki-shunsuke/github-action-renovate-config-validator
GitHub Actions for renovate-config-validator
step-security/proof-html/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
A GitHub Action to validate HTML, check links, and more ✅. Secure drop-in replacement for anishathalye/proof-html.
jasonn3/build-container-installer
Creates an ISO for installing a container image as an OS
kritsanan1/attest-build-provenance
Action for generating build provenance attestations for workflow artifacts
step-security/runs-on-cache/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Shockingly faster GitHub Action cache with S3 backend. Secure drop-in replacement for runs-on/cache.
dsanders11/project-actions/copy-project
A collection of actions for automating GitHub projects