Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

aptos-labs/setup-buildx-action

aptos-labs/setup-buildx-action

GitHub Action to set up Docker Buildx

3/10
EndBug/version-check

EndBug/version-check

:octocat: An action that allows you to check whether your npm package version has been updated

5/10
rmacklin/fetch-through-merge-base

rmacklin/fetch-through-merge-base

A GitHub Action for fetching PR commits through the merge-base

3/10
Git-Hub-Chris/PyTorch/.github/actions/setup-rocm

Git-Hub-Chris/PyTorch/.github/actions/setup-rocm

Python package.

4/10
frenck/action-setup-yq

frenck/action-setup-yq

🚀 Frenck's GitHub Action for setting up yq

5/10
llvm/actions/install-ninja

llvm/actions/install-ninja

4/10
canonical/actions/build-snap

canonical/actions/build-snap

Shared GitHub Actions

2/10
ConsenSys/github-actions/docs-link-check

ConsenSys/github-actions/docs-link-check

Github Actions for Documentation projects

4/10
jgillis/setup-build-matrix

jgillis/setup-build-matrix

Setup a more complex build matrix for GitHub Actions

3/10
Reality2byte/codeql-action/../action/init

Reality2byte/codeql-action/../action/init

Actions for running CodeQL analysis

5/10
NVIDIA/nautobot-app-fsus/.github/actions/poetry

NVIDIA/nautobot-app-fsus/.github/actions/poetry

Field Serviceable Units for Nautobot

6/10
milhy545/coder/.github/actions/setup-go

milhy545/coder/.github/actions/setup-go

Secure environments for developers and their agents

4/10
pytorch/torchcodec/test-infra/.github/actions/setup-binary-builds

pytorch/torchcodec/test-infra/.github/actions/setup-binary-builds

PyTorch media decoding and encoding

4/10
grafana/setup-grizzly

grafana/setup-grizzly

GitHub action to setup and use Grizzly

5/10
weetbix/configurable-required-approvals

weetbix/configurable-required-approvals

Enforce a number of required reviews for certain files

2/10
backstage/actions/pr-sync

backstage/actions/pr-sync

Custom actions for automating Backstage workflows

3/10
elastic/oblt-actions/check-dependent-jobs

elastic/oblt-actions/check-dependent-jobs

8/10
coveo/ui-kit/.github/actions/e2e-vuejs

coveo/ui-kit/.github/actions/e2e-vuejs

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
step-security/workflow-status/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/workflow-status/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Workflow Status Action. Secure drop-in replacement for martialonline/workflow-status.

10/10
clowdhaus/argo-cd-action

clowdhaus/argo-cd-action

GitHub action for executing Argo CD 🦑

5/10