Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

grafana/tns/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/tns/_shared-workflows-dockerhub-login/actions/get-vault-secrets

Observability Demo App

5/10
pypa/gh-action-pypi-publish

pypa/gh-action-pypi-publish

The blessed :octocat: GitHub Action, for publishing your :package: distribution files to PyPI, the tokenless way: https://github.com/marketplace/actions/pypi-publish

8/10
shivammathur/cache-extensions

shivammathur/cache-extensions

:package: Cache PHP extensions in GitHub Actions

7/10
step-security/background-action

step-security/background-action

Background commands with log tailing/capture; waits until file/port/socket/http are ready to proceed. Isolates/dedupe errors. Secure drop-in replacement for JarvusInnovations/background-action.

10/10
Maintained by StepSecurity
edera-dev/falco_plugin/.github/actions/install-llvm

edera-dev/falco_plugin/.github/actions/install-llvm

A Falco plugin for forwarding low-level events (syscalls, etc) out of Edera zones.

5/10
step-security/jest-coverage-report-action

step-security/jest-coverage-report-action

Track your code coverage in every pull request. Secure drop-in replacement for ArtiomTr/jest-coverage-report-action.

10/10
Maintained by StepSecurity
CordEngine/.github/actions/qa

CordEngine/.github/actions/qa

7/10
step-security/auto-assign-issue/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/auto-assign-issue/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action that auto-assigns issues or PRs to one or more users. Secure drop-in replacement for pozil/auto-assign-issue.

10/10
asdf-vm/actions/setup

asdf-vm/actions/setup

GitHub Actions for the asdf version manager

6/10
grafana/plugin-actions/create-plugin-update

grafana/plugin-actions/create-plugin-update

6/10
enricomi/publish-unit-test-result-action

enricomi/publish-unit-test-result-action

GitHub Action to publish unit test results on GitHub

6/10
ActiOns/cheCkout

ActiOns/cheCkout

Action for checking out a repo

8/10
bjw-s/helm-charts-actions/verify-chart-changelog

bjw-s/helm-charts-actions/verify-chart-changelog

A collection of GitHub actions to use with helm-charts repo

5/10
step-security/terraform-docs-action

step-security/terraform-docs-action

A Github action for generating Terraform module documentation using terraform-docs and gomplate. Secure drop-in replacement for terraform-docs/gh-actions.

10/10
Maintained by StepSecurity
peter-murray/value-as-flag-action

peter-murray/value-as-flag-action

1/10
freckle/wiz-action

freckle/wiz-action

6/10
arduino/report-size-deltas

arduino/report-size-deltas

GitHub Actions action that comments on pull requests with a report of change in memory usage of Arduino sketches

7/10
cilium/scale-tests-action/create-cluster

cilium/scale-tests-action/create-cluster

Repository that hosts the GitHub action to run scale tests

3/10
NVIDIA/spark-rapids-common/license-header-check

NVIDIA/spark-rapids-common/license-header-check

Reusable GitHub Actions workflows and common scripts for Spark RAPIDS

5/10
crossplane-contrib/xpkg-action

crossplane-contrib/xpkg-action

A @github action for building @crossplane packages

2/10