Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
projectdiscovery/actions/setup/go
ProjectDiscovery's Composite Actions
jbergstroem/hadolint-gh-action
A Dockerfile linter using Hadolint for Github actions that provides code annotations, Github advanced security and more
vapor/swift-codecov-action
A GitHub Action which performs Codecov.io uploads with additional support for Swift projects
oracle-actions/login-ocir
Login to Oracle Cloud Infrastructure Registry (OCIR)
yonasbsd/surrealdb/.github/actions/build-macos
A scalable, distributed, collaborative, document-graph database, for the realtime web
yonasbsd/cargo-binstall
Binary installation for rust projects
ministryofjustice/laa-data-claims-api/.github/actions/image
LAA Data Claims API
briansmith/actions-checkout
Action for checking out a repo
step-security/gh-docker-logs/__builder_checkout_dir__/.github/actions/secure-download-artifact
GitHub Action to collect logs from all docker containers. Secure drop-in replacement for jwalton/gh-docker-logs.
optum/booster/.github/actions/image
Booster Cloud Framework
yokawasa/action-setup-kube-tools
Github Action that setup Kubernetes tools (kubectl, kustomize, helm, kubeconform, conftest, yq, rancher, tilt, skaffold) very fast and cache them on the runner. Please [β©Star] if you're using it!
nvidia/nemo-retriever/.github/actions/setup-docker-buildx
NeMo Retriever Library is a scalable, performance-oriented document content and metadata extraction microservice. NeMo Retriever Library uses specialized NVIDIA NIM microservices to find, contextualize, and extract text, tables, charts and images that you can use in downstream generative applications.
neuralegion/wait-for
Action polls a NeuraLegion scan until it returns a detected issue, or its time runs out
shanegenschaw/pull-request-comment-trigger
A github action for detecting a "trigger" in a pull request description or comment
magrhino/wud-updater/.github/actions/setup-python-env
Updating docker images using WUD's Notification System
grafana/clickhouse-datasource/actions/commands
Grafana Plugin for ClickHouse
sceptre/github-ci-action
step-security/action-surefire-report/__builder_checkout_dir__/.github/actions/secure-download-artifact
Reports surefire test results as GitHub Pull Request Check. Secure drop-in replacement for ScaCap/action-surefire-report.
bitwarden/ios/.github/actions/public-layout.tsx
Bitwarden mobile apps (Password Manager and Authenticator) for iOS.
stakekit/signers/.github/composite_actions/initial_setup
The StakeKit Signers allows you to create a signing wallet instance from a mnemonic phrase or ledger app and sign transactions