Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
step-security/ghaction-import-gpg/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
GitHub Action to import a GPG key. Secure drop-in replacement for crazy-max/ghaction-import-gpg.
approved-3rd-party-actions/branch-protection
step-security/ssh-agent/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
GitHub Action to setup `ssh-agent` with a private key. Secure drop-in replacement for webfactory/ssh-agent.
step-security/runs-on-cache/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
Shockingly faster GitHub Action cache with S3 backend. Secure drop-in replacement for runs-on/cache.
shivammathur/setup-php
GitHub action to set up PHP with extensions, php.ini configuration, coverage drivers, and various tools.
approved-3rd-party-actions/action-get-release
Get a Github release
chronograph-pe/build-push-action
GitHub Action to build and push Docker images with Buildx
grafana/shared-workflows/actions/go-flaky-tests
A public-facing, centralized place to store reusable workflows used by Grafana Labs.
GuillaumeFalourd/wait-sleep-action
Github actions to wait / sleep during a workflow execution ⏱
sergeysova/jq-action
This lets you do jq operations in GitHub Actions.
int128/create-ecr-repository-action
Action to create Amazon ECR or ECR Public repository and put lifecycle policy
bit-tasks/init
Initialize Bit task for CI/CD
mshick/add-pr-comment
uses: mshick/add-pr-comment@v2
expo/expo-github-action
Expo GitHub Action makes it easy to automate EAS builds or updates
tfsec/tfsec-sarif-action
micronaut-projects/github-actions/graalvm/build
grafana/writers-toolkit/publish-technical-documentation
Technical documentation guidelines for Grafana Labs documentation
rockem/create-opsgenie-alert-action
GiHub action for creating new alert in OpsGenie
taiki-e/checkout-action
GitHub Action for checking out a repository. (Simplified actions/checkout alternative that does not depend on Node.js.)
obrassard/action-sharepoint-publish
Github Action that create an archive of a repository and upload it to a Sharepoint library