Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

gr1n/setup-poetry

gr1n/setup-poetry

Set up your GitHub Actions workflow with a specific version of Poetry

4/10
DeLaGuardo/setup-clojure

DeLaGuardo/setup-clojure

GitHub Action to provision clojure's most popular build tools for Linux, Mac OS X and Windows.

4/10
step-security/add-pr-comment/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/add-pr-comment/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

GitHub Action which adds a comment to a pull request's issue. Secure drop-in replacement for mshick/add-pr-comment.

10/10
step-security/release-notes-generator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/release-notes-generator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Action to auto generate a release note based on your events. Secure drop-in replacement for Decathlon/release-notes-generator-action.

10/10
glotaran/pyglotaran-examples

glotaran/pyglotaran-examples

This repository hold examples showcasing the use of the pyglotaran package

4/10
microsoft/RichCodeNavIndexer

microsoft/RichCodeNavIndexer

A GitHub Action that adds rich code navigation to a repo's branches and pull requests.

5/10
lfreleng-actions/python-audit-action

lfreleng-actions/python-audit-action

Check Python dependencies for known security vulnerabilities

6/10
austenstone/copilot-usage

austenstone/copilot-usage

Create copilot usage reports as job summaries, and much more!

4/10
grafana/plugin-actions/publish-report

grafana/plugin-actions/publish-report

6/10
kusaridev/kusari-cli/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

kusaridev/kusari-cli/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Command line interface for Kusari

7/10
srebhan/label-milestone-action

srebhan/label-milestone-action

Github action to assign milestones to PRs based on labels

4/10
andstor/file-reader-action

andstor/file-reader-action

:page_facing_up: :octocat: GitHub Action to read the contents of a file

2/10
step-security/action-discord

step-security/action-discord

🚀 GitHub Action that sends a Discord message. . Secure drop-in replacement for Ilshidur/action-discord.

10/10
Maintained by StepSecurity
jenseng/dynamic-uses

jenseng/dynamic-uses

Dynamically resolve and use another GitHub action

5/10
wpengine/github-action-wpe-site-deploy

wpengine/github-action-wpe-site-deploy

A GitHub Action to deploy code directly to WP Engine.

6/10
lfreleng-actions/pypi-publish-action

lfreleng-actions/pypi-publish-action

Publishes a Python project to the Python Package Index (PyPI)

6/10
gr2m/get-json-paths-action

gr2m/get-json-paths-action

A GitHub Action to access deep values of JSON strings

2/10
Slashgear/action-check-pr-title

Slashgear/action-check-pr-title

Github action to check Pull Request title based on JS Regexp This action in really simple and use Github Action core library base on event of your pull requests No need to install anything on your runner to use it. Simple, fast, reliable 🎉

5/10
cisagov/setup-go-package

cisagov/setup-go-package

Composite GitHub action to install a Go package.

8/10
Tiryoh/gha-jobid-action

Tiryoh/gha-jobid-action

⚙️ GitHub Action to get the current workflow run's Job URL and ID

4/10