Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

cargo-bins/cargo-binstall

cargo-bins/cargo-binstall

Binary installation for rust projects

7/10
pytorch/test-infra/.github/actions/gather-runners-info

pytorch/test-infra/.github/actions/gather-runners-info

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
reviewdog/action-shellcheck

reviewdog/action-shellcheck

Run shellcheck with reviewdog

6/10
h0x0er/actions-runner-controller/.github/actions/setup-arc-e2e

h0x0er/actions-runner-controller/.github/actions/setup-arc-e2e

Kubernetes controller for GitHub Actions self-hosted runners

3/10
step-security/envsubst-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/envsubst-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Github Action for envsubst. Secure drop-in replacement for danielr1996/envsubst-action.

10/10
reviewdog/action-yamllint

reviewdog/action-yamllint

Run yamllint with reviewdog

4/10
userdocs/actions/boost

userdocs/actions/boost

3/10
jsmrcaga/action-netlify-deploy

jsmrcaga/action-netlify-deploy

4/10
grafana/grafana/.github/actions/check-jobs

grafana/grafana/.github/actions/check-jobs

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

6/10
elastic/docs-builder/actions/validate-inbound-local

elastic/docs-builder/actions/validate-inbound-local

7/10
step-security/r-lib-actions/setup-renv

step-security/r-lib-actions/setup-renv

GitHub Actions for the R community. Secure drop-in replacement for r-lib/actions.

10/10
Maintained by StepSecurity
ethereum/EIP-Bot

ethereum/EIP-Bot

A collection of bots that make life easier on editors

3/10
allenporter/flux-local/action/test

allenporter/flux-local/action/test

flux-local is a set of tools and libraries for managing a local flux gitops repository focused on validation steps to help improve quality of commits, PRs, and general local testing.

6/10
tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

A comprehensive prompt testing and evaluation system with advanced analytics, AI-powered optimization, and real-time performance monitoring.

5/10
pkgjs/request-codeowner-review

pkgjs/request-codeowner-review

5/10
datatheorem/datatheorem-mobile-secure-action

datatheorem/datatheorem-mobile-secure-action

4/10
cli/gh-extension-precompile

cli/gh-extension-precompile

Action for publishing binary GitHub CLI extensions

6/10
elastic/elastic-github-actions/elasticsearch

elastic/elastic-github-actions/elasticsearch

This action spins up an Elasticsearch instance that can be accessed and used in your subsequent steps.

6/10
step-security/push-md-to-notion/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/push-md-to-notion/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Push Markdown to Notion. Secure drop-in replacement for JoshStern/push-md-to-notion.

10/10
optum/booster/.github/actions/build

optum/booster/.github/actions/build

Booster Cloud Framework

3/10