Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/proof-html/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/proof-html/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A GitHub Action to validate HTML, check links, and more ✅. Secure drop-in replacement for anishathalye/proof-html.

10/10
snapcrafters/ci/test-snap-build

snapcrafters/ci/test-snap-build

Repository for shared CI tools and actions

5/10
hynek/build-and-inspect-python-package

hynek/build-and-inspect-python-package

Build and Inspect Python Packages in GitHub Actions

8/10
actions-tools/yaml-outputs

actions-tools/yaml-outputs

GitHub Action to read a YAML file and flatten it recursively into outputs

2/10
palewire/internet-archive-upload

palewire/internet-archive-upload

Upload files to an archive.org collection in your GitHub Action

2/10
Git-Hub-Chris/FreeCAD/.github/workflows/actions/linux/install

Git-Hub-Chris/FreeCAD/.github/workflows/actions/linux/install

Open source 3D modeler.

7/10
coveord/spinnaker/.github/actions/spinnaker-release

coveord/spinnaker/.github/actions/spinnaker-release

Spinnaker is an open source, multi-cloud continuous delivery platform for releasing software changes with high velocity and confidence.

3/10
iancha1992/continuous-integration/actions/cherry_picker

iancha1992/continuous-integration/actions/cherry_picker

Bazel's Continuous Integration Setup

3/10
gitleaks/gitleaks-action

gitleaks/gitleaks-action

Protect your secrets using Gitleaks-Action

4/10
zimperium/zscanmarketplace

zimperium/zscanmarketplace

5/10
step-security/changed-files

step-security/changed-files

Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories. Secure drop-in replacement for tj-actions/changed-files.

10/10
Maintained by StepSecurity
Adyen/adyen-prestashop/.github/actions/build_plugin

Adyen/adyen-prestashop/.github/actions/build_plugin

Adyen Payment plugin for Prestashop

7/10
grafana/mimir-loki/lib/actions/push-images

grafana/mimir-loki/lib/actions/push-images

Like Prometheus, but for logs.

3/10
warchant/setup-sonar-scanner

warchant/setup-sonar-scanner

Github Action which downloads and runs sonar-scanner cli with custom parameters to start Sonarqube scan.

5/10
nowsecure/nowsecure-action

nowsecure/nowsecure-action

The NowSecure Action delivers fast, accurate, automated security analysis of iOS and Android apps coded in any language

5/10
actions-security-demo/pytorch/.github/actions/setup-rocm

actions-security-demo/pytorch/.github/actions/setup-rocm

Tensors and Dynamic neural networks in Python with strong GPU acceleration

3/10
pytorch/ao/test-infra/.github/actions/calculate-docker-image

pytorch/ao/test-infra/.github/actions/calculate-docker-image

PyTorch native quantization and sparsity for training and inference

4/10
get-woke/woke-action

get-woke/woke-action

GitHub Action for running `woke` on Pull Requests

3/10
GitTools/actions

GitTools/actions

GitHub Action that installs and uses the GitVersion and GitReleaseManager tools

7/10
grafana/grafana/.github/workflows/actions/changelog

grafana/grafana/.github/workflows/actions/changelog

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

7/10