Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

pytorch/pytorch.github.io/test-infra/.github/actions/pull-docker-image

pytorch/pytorch.github.io/test-infra/.github/actions/pull-docker-image

The website for PyTorch

3/10
gaurav-nelson/github-action-markdown-link-check

gaurav-nelson/github-action-markdown-link-check

⛔️ DEPRECATED Check all links in markdown files if they are alive or dead. 🔗✔️PS: https://github.com/tcort/github-action-markdown-link-check

5/10
popsiclestick/gist-sync-action

popsiclestick/gist-sync-action

Github action to mirror a file into a gist

2/10
Legit-Labs/legitify

Legit-Labs/legitify

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

5/10
secureblue/Trivalent/__BUILDER_CHECKOUT_DIR__/.github/actions/compute-sha256

secureblue/Trivalent/__BUILDER_CHECKOUT_DIR__/.github/actions/compute-sha256

A security-focused, Chromium-based browser for desktop Linux inspired by Vanadium.

8/10
step-security/pull-request-comment-trigger

step-security/pull-request-comment-trigger

A github action for detecting a "trigger" in a pull request description or comment. Secure drop-in replacement for Khan/pull-request-comment-trigger.

10/10
Maintained by StepSecurity
crossplane-contrib/setup-crossplane-action

crossplane-contrib/setup-crossplane-action

GitHub Action to setup the Crossplane binary

3/10
fortify/gha-export-vulnerabilities

fortify/gha-export-vulnerabilities

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead

3/10
mansona/npm-lockfile-version

mansona/npm-lockfile-version

2/10
elastic/oblt-actions/buildkite/run

elastic/oblt-actions/buildkite/run

7/10
stackadapt/action-download-artifact

stackadapt/action-download-artifact

:gear: A GitHub Action to download an artifact associated with given workflow and commit or other criteria

2/10
defExistentia/coder-2.24.3-modified/.github/actions/setup-go-tools

defExistentia/coder-2.24.3-modified/.github/actions/setup-go-tools

3/10
azure/functions-action

azure/functions-action

Enable GitHub developers to deploy to Azure Function Apps using GitHub Actions

6/10
pravipati-sandbox/codeql-action/init

pravipati-sandbox/codeql-action/init

Actions for running CodeQL analysis

2/10
grafana/community-contributions/.grafana-main/.github/actions/changelog

grafana/community-contributions/.grafana-main/.github/actions/changelog

External contributor PR workflow testing sandbox

4/10
crohr/composer

crohr/composer

Use the Composer CLI in your Github Actions.

2/10
step-security/setup-kubectl/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/setup-kubectl/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

GitHub Action for installing Kubectl. Secure drop-in replacement for Azure/setup-kubectl.

10/10
autero1/action-terragrunt

autero1/action-terragrunt

GitHub action for setting up Terragrunt https://terragrunt.gruntwork.io

4/10
angular/dev-infra/github-actions/previews/upload-artifacts-to-firebase

angular/dev-infra/github-actions/previews/upload-artifacts-to-firebase

Angular Development Infrastructure

6/10
mockoon/cli-action

mockoon/cli-action

GitHub Action for Mockoon CLI

5/10