Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

1466587594/get-current-time

1466587594/get-current-time

This action sets the current ISO8601 time to the time output and also provides readableTime, formattedTime, and many more digital outputs like year, day, second, etc. Useful for setting build times in subsequent steps, renaming your artifact, or keeping the same recorded time for the entire workflow.

3/10
oxsecurity/megalinter/flavors/ci_light

oxsecurity/megalinter/flavors/ci_light

🦙 MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.

7/10
reitzig/actions-asciidoctor

reitzig/actions-asciidoctor

GitHub Action that installs asciidoctor

4/10
shallwefootball/upload-s3-action

shallwefootball/upload-s3-action

github action for upload to S3 ☁️

1/10
grafana/shared-workflows/actions/create-github-app-token

grafana/shared-workflows/actions/create-github-app-token

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
uniswap/github-tag-action

uniswap/github-tag-action

A Github Action to automatically bump and tag master, on merge, with the latest SemVer formatted version. Works on any platform.

2/10
step-security/workflow-dispatch/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/workflow-dispatch/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A GitHub Action for triggering workflows, using the `workflow_dispatch` event. Secure drop-in replacement for benc-uk/workflow-dispatch.

10/10
containerd/project-checks

containerd/project-checks

This cross-project repository holds utilities, scripts, and common files used across the containerd master project and many sub-projects within the containerd organization

5/10
getsentry/action-self-hosted-e2e-tests

getsentry/action-self-hosted-e2e-tests

A centralized location for self-hosted end-to-end tests

6/10
cshein45-Movement/MOVE-Token

cshein45-Movement/MOVE-Token

Movement Ecosystem

5/10
pytorch/pytorch/.github/actions/upload-sccache-stats

pytorch/pytorch/.github/actions/upload-sccache-stats

Tensors and Dynamic neural networks in Python with strong GPU acceleration

6/10
protocolbuffers/protobuf-ci/bazel

protocolbuffers/protobuf-ci/bazel

A shared repository for Protobuf CI actions

5/10
elastic/oblt-actions/version-framework

elastic/oblt-actions/version-framework

7/10
step-security/action-misspell/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/action-misspell/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Run misspell with reviewdog. Secure drop-in replacement for reviewdog/action-misspell.

10/10
LuDuda/oss-fuzz/infra/cifuzz/actions/run_fuzzers

LuDuda/oss-fuzz/infra/cifuzz/actions/run_fuzzers

OSS-Fuzz - continuous fuzzing for open source software.

2/10
unsplash/comment-on-pr

unsplash/comment-on-pr

A GitHub Action to comment on the relevant open PR when a commit is pushed.

4/10
elide-dev/oxc/.github/actions/archive-binary

elide-dev/oxc/.github/actions/archive-binary

⚓ A collection of JavaScript tools written in Rust.

6/10
TBXark/docker-action

TBXark/docker-action

GitHub Action to build and push Docker images with Buildx

3/10
os-climate/osc-github-devops/.github/actions/github-labels-action

os-climate/osc-github-devops/.github/actions/github-labels-action

Template Python project, common tests, GitHub Actions/Workflows, linting tools

5/10
step-security/install-poetry

step-security/install-poetry

Github action for installing and configuring Poetry. Secure drop-in replacement for snok/install-poetry.

10/10
Maintained by StepSecurity