Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
humbletim/install-vulkan-sdk
Automatically downloads and installs prebuilt Vulkan SDK releases.
ledgerhq/ledger-live/tools/actions/composites/setup-test-desktop
Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.
coursgranja91-hash/erk/.github/actions/setup-prettier
erk is a tool for the orchestration and management of plan-oriented agentic engineering.
raycast/github-actions/git-post-store-urls-to-pr
pkgdeps/git-tag-action
[GitHub Action] Get ${version} from package.json and git tag ${version} for the repository.
launchdarkly/android-client-sdk/.github/actions/ci
LaunchDarkly Client-side SDK for Android
step-security/snyk-actions/python-3.12
A set of GitHub actions for checking your projects for vulnerabilities. Secure drop-in replacement for snyk/actions.
projectdiscovery/subfinder
Fast passive subdomain enumeration tool.
mbrobbel/rustfmt-check
GitHub Action to format Rust code using rustfmt
launchdarkly/swift-eventsource/.github/actions/build-ios
Server-sent events (SSE) client implementation in Swift for iOS, macOS, tvOS, and watchOS
jfagoagas/grafana/actions/backport
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
ask-bonk/ask-bonk/github
Bonk is a code & docs agent that can build, review and triage for you, built on Cloudflare Workers & OpenCode.
nvidia/dsx-github-actions/.github/actions/go-test
Github Action infrastructure for DSX
viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/hadolint-hadolint-action
Mirror from https://github.com/hadolint/hadolint-action
step-security/setup-gcloud
A GitHub Action for installing and configuring the gcloud CLI. Secure drop-in replacement for google-github-actions/setup-gcloud.
adanalvarez/traildiscover
An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications
equinor/fusion-project-portal/.github/actions/client-test
Project Portal powered By Fusion
step-security/protobuf-ci/bazel-docker
A shared repository for Protobuf CI actions. Secure drop-in replacement for protocolbuffers/protobuf-ci.
boshen/setup-ohos-sdk
Github action to setup the OpenHarmony SDK
fsouza/fake-gcs-action
GitHub Action for running fake-gcs-server in a dettached container in background.