Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
githubsecuritylab/actions-permissions/advisor
GitHub token permissions Monitor and Advisor actions
bazel-contrib/setup-bazel
GitHub Action to configure Bazel
microsoft/devskim-action
The GitHub Action for DevSkim
datadog/integrations-core/core-temp/.github/actions/setup-test-target-scripts
Core integrations of the Datadog Agent
nv-gha-runners/cuda-python/.github/actions/install_unix_deps
CUDA Python: Performance meets Productivity
grafana/grafana-github-actions-go/bump-release
Grafana GitHub Actions in Golang
pytorch/pytorch.github.io/test-infra/.github/actions/export-matrix-variables
The website for PyTorch
domblack/github-release
Github Action to create, update, or add files to Github Releases
lcarva/review-rot-action/run
GitHub actions for review-rot
ministryofjustice/hmpps-community-payback-ui/.github/actions/slack_failure_notification
UI for community payback (bootstrapped 2025-08-15)
suzuki-shunsuke/github-action-renovate-config-validator
GitHub Actions for renovate-config-validator
jasonn3/build-container-installer
Creates an ISO for installing a container image as an OS
kritsanan1/attest-build-provenance
Action for generating build provenance attestations for workflow artifacts
dsanders11/project-actions/copy-project
A collection of actions for automating GitHub projects
sailpoint-oss/github-spectral-action
A Github Action that will take in the changed files from a pull request and create a error report as a comment on the PR.
step-security/create-or-update-comment/__builder_checkout_dir__/.github/actions/privacy-check
A GitHub action to create or update an issue or pull request comment. Secure drop-in replacement for peter-evans/create-or-update-comment.
bridgecrewio/bridgecrew-action
This GitHub Action runs Bridgecrew against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues.
superfly/flyctl-actions
:octocat: GitHub Action that wraps the flyctl
aabed/slack-file-upload-action
This action uploads file to slack