Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
dagster-io/dagster-cloud-action/actions/utils/parse_workspace
c2corg/browserslist-update-action
A Github Action that runs `npx update-browserslist-db@latest` on a repository and proposes a pull request to merge updates.
step-security/upload-cloud-storage/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
A GitHub Action for uploading files to a Google Cloud Storage (GCS) bucket. Secure drop-in replacement for google-github-actions/upload-cloud-storage.
NVIDIA/cccl/.github/actions/version-update
CUDA Core Compute Libraries
grafana/sigma-rule-deployment/actions/deploy
Automate the conversion and deployment of Sigma Rules to Grafana Alerting via GitHub Actions
jwgmeligmeyling/checkstyle-github-action
Push Chekcstyle results as check run annotations
open-policy-agent/setup-opa
Sets up Open Policy Agent CLI in your GitHub Actions workflow.
KeisukeYamashita/setup-release
🎁 GitHub Action that downloads a release and provision for later job usage
josStorer/get-current-time
This action sets the current ISO8601 time to the time output and also provides readableTime, formattedTime, and many more digital outputs like year, day, second, etc. Useful for setting build times in subsequent steps, renaming your artifact, or keeping the same recorded time for the entire workflow.
r7kamura/rust-problem-matchers
GitHub Action to setup Problem Matchers for Rust.
koj-co/release-scheduler
🚂 Schedule a weekly or monthly Semantic Release
dsanders11/project-actions/add-item
A collection of actions for automating GitHub projects
rubenesp87/semver-validation-action
SEMVER validation Github Action
anmol098/waka-readme-stats
This GitHub action helps to add cool dev metrics to your github profile Readme
graycoreio/github-actions-magento2/get-magento-version
Github Actions and Workflows that make maintaining Magento2 projects and modules easier.
lfreleng-actions/maven-build-action
Action to build Maven projects
nam20485/docs-1/.github/actions/clone-translations
The open-source repo for docs.github.com
sgammon/verify-hashes
Library, CLI, and GitHub Action for verifying hashes
asymmetric-research/clusterfuzz-fuzzbot-builder/assets/brand/step-security-icon.svg
Build environment matching a FuzzBot running Ubuntu 22.04
udoprog/kick
The omnibus project management tool