Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/github-action-renovate-config-validator

step-security/github-action-renovate-config-validator

GitHub Actions for renovate-config-validator. Secure drop-in replacement for suzuki-shunsuke/github-action-renovate-config-validator.

10/10
Maintained by StepSecurity
hashicorp/setup-copywrite

hashicorp/setup-copywrite

GitHub Action for downloading and installing the copywrite CLI

6/10
modeseven-lfreleng-actions/chartmuseum-action

modeseven-lfreleng-actions/chartmuseum-action

Starts and runs a ChartMuseum Helm Chart repository/docker container

5/10
step-security/jest-coverage-report-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/jest-coverage-report-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Track your code coverage in every pull request. Secure drop-in replacement for ArtiomTr/jest-coverage-report-action.

10/10
brittanyshelton23/docs/.github/actions/warmup-remotejson-cache

brittanyshelton23/docs/.github/actions/warmup-remotejson-cache

The open-source repo for docs.github.com

3/10
AdrianGonz97/refined-cf-pages-action

AdrianGonz97/refined-cf-pages-action

2/10
actions/setup-python

actions/setup-python

Set up your GitHub Actions workflow with a specific version of Python

6/10
equinor/fusion-framework/.github/workflows/actions/node-setup

equinor/fusion-framework/.github/workflows/actions/node-setup

Fusion Framework, built and maintained to Fusion Core

7/10
Tsukimarf/docs/.github/actions/slack-alert

Tsukimarf/docs/.github/actions/slack-alert

The open-source repo for docs.github.com

3/10
namespacelabs/nscloud-cache-action

namespacelabs/nscloud-cache-action

A robust alternative to actions/cache with zero latency.

3/10
infracost/actions/setup

infracost/actions/setup

GitHub Action for Infracost. See cloud cost estimates for Terraform in pull requests. 💰📉 Love your cloud bill!

4/10
thechrisjohnson/terraform-cloud-provider-publish

thechrisjohnson/terraform-cloud-provider-publish

An action for publishing terraform providers to a private registry

5/10
ionos-deploy-now/deploy-to-ionos-action

ionos-deploy-now/deploy-to-ionos-action

3/10
gavv/pull-request-artifacts

gavv/pull-request-artifacts

:octocat: GitHub Action to post build artifacts in PR comments.

2/10
step-security/r-lib-actions/setup-pandoc

step-security/r-lib-actions/setup-pandoc

GitHub Actions for the R community. Secure drop-in replacement for r-lib/actions.

10/10
Maintained by StepSecurity
slsa-framework/slsa-github-generator/.github/workflows/generator_generic_slsa3.yml

slsa-framework/slsa-github-generator/.github/workflows/generator_generic_slsa3.yml

Language-agnostic SLSA provenance generation for Github Actions

7/10
pytorch/vision/test-infra/.github/actions/calculate-docker-image

pytorch/vision/test-infra/.github/actions/calculate-docker-image

Datasets, Transforms and Models specific to Computer Vision

4/10
harden-runner-canary/docker-action-k8s

harden-runner-canary/docker-action-k8s

3/10
pytorch/tensordict/test-infra/.github/actions/teardown-linux

pytorch/tensordict/test-infra/.github/actions/teardown-linux

TensorDict is a pytorch dedicated tensor container.

3/10
actions-security-demo/script-injection/.github/actions/setup-enterprise

actions-security-demo/script-injection/.github/actions/setup-enterprise

2/10