Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
lumoin/trusted-devsecops/.github/actions/sign-artifact
Reusable, security-critical DevSecOps workflows and tools for trusted open-source projects.
modeseven-lfreleng-actions/release-assets-action
Uploads build artefacts and other workflow assets to a GitHub release
os-climate/osc-github-devops/.github/actions/repository-inventory-action
Template Python project, common tests, GitHub Actions/Workflows, linting tools
mercari/terraform-provider-slack/.github/actions/setup-go
actionshub/chef-install
Repository for the actionshub-chef-install Github Action
equinor/fusion-framework/.github/workflows/actions/build-packages
Fusion Framework, built and maintained to Fusion Core
yonasbsd/iggy/.github/actions/csharp-dotnet/pre-merge
Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.
equinor/axe-slack-reporter
GH Action for reporting findings from axe-core to Slack using incoming web hook
ribtoks/parent-issue-update
GitHub Action that updates parent issues when child issue change
ministryofjustice/laa-ccms-common-workflows/.github/actions/define-snyk-arguments
Common GitHub actions and workflows used by LAA CCMS projects.
raj-stepsecurity/jest-coverage-action-demo
step-security/run-vcpkg
The GitHub Action to setup vcpkg for your C++ based projects. Stores built ports using Binary Caching backed onto GH Cache. Secure drop-in replacement for lukka/run-vcpkg.
cilium/scale-tests-action/export-results
Repository that hosts the GitHub action to run scale tests
aerospike/aerospike-client-java/.github/actions/run-ee-server
Aerospike Java Client Library
ministryofjustice/opg-github-actions/actions/github-deploy-key
OPG shared GitHub composite actions for workflows.: Managed by opg-org-infra & Terraform
ds0440/harden-runner
Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.
memospot/action-dagger
Enhanced Dagger GitHub Action
neondatabase/neon/.github/actions/neon-branch-create
Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, code-like database branching, and scale to zero.
dawidd6/action-send-mail/_next/static/chunks/56007-f70128a03cac0e85.js
:gear: A GitHub Action to send an email to multiple recipients
reviewdog/action-languagetool
Run languagetool with reviewdog :dog: