Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

chainguard-dev/actions/trailing-space

chainguard-dev/actions/trailing-space

A collection of reusable Github Actions workflows.

8/10
cilium/actions-app-token

cilium/actions-app-token

Impersonate a GitHub App Token inside Actions

2/10
softwareforgood/check-artifact-v4-existence

softwareforgood/check-artifact-v4-existence

Github Action for checking existence of an artifact that's compatible with upload-artifact v4

4/10
buildless/setup-java

buildless/setup-java

Set up your GitHub Actions workflow with a specific version of Java

2/10
base/optimism/.github/actions/setup

base/optimism/.github/actions/setup

Optimism is Ethereum, scaled.

3/10
neondatabase/dev-actions/set-docker-config-dir

neondatabase/dev-actions/set-docker-config-dir

6/10
obi1kenobi/cargo-semver-checks-action

obi1kenobi/cargo-semver-checks-action

A GitHub Action for running cargo-semver-checks

4/10
DariuszPorowski/github-action-gitleaks

DariuszPorowski/github-action-gitleaks

This GitHub Action allows you to run Gitleaks in your GitHub workflow.

4/10
btnguyen2k/action-semrelease

btnguyen2k/action-semrelease

GitHub Action to publish releases using tags, following sematic versioning

5/10
r-lib/actions/check-r-package

r-lib/actions/check-r-package

GitHub Actions for the R community

9/10
hyperledger/indy-shared-gha/.github/actions/set-version

hyperledger/indy-shared-gha/.github/actions/set-version

5/10
grafana/grafana/pkg/build/actions/bump-version

grafana/grafana/pkg/build/actions/bump-version

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

6/10
step-security/release-notes-generator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/release-notes-generator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Action to auto generate a release note based on your events. Secure drop-in replacement for Decathlon/release-notes-generator-action.

10/10
MathRobin/timezone-action

MathRobin/timezone-action

GitHub action to set timezone in your locale, works with Linux, Windows, MacOS

2/10
open-edge-platform/orch-ci/discover-changed-files

open-edge-platform/orch-ci/discover-changed-files

Central hub for shared continuous integration (CI) workflows and actions for the Open-Edge-Platform project

7/10
dschep/install-poetry-action

dschep/install-poetry-action

A Github action to install poetry

2/10
azure/setup-kubectl

azure/setup-kubectl

GitHub Action for installing Kubectl

9/10
Sibz/github-status-action

Sibz/github-status-action

3/10
pytorch/data/test-infra/.github/actions/setup-binary-builds

pytorch/data/test-infra/.github/actions/setup-binary-builds

A PyTorch repo for data loading and utilities to be shared by the PyTorch domain libraries.

3/10
hashicorp/setup-signore

hashicorp/setup-signore

6/10