Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

github/codeql-action

github/codeql-action

Actions for running CodeQL analysis

10/10
smallstep/action-install-step-cli

smallstep/action-install-step-cli

A GitHub Action to install step CLI on Linux and MacOS.

4/10
pullpreview/action

pullpreview/action

A GitHub Action that starts preview deployments for your pull requests and branches. It can work with any application that has a valid Docker Compose file.

4/10
coactions/setup-xvfb

coactions/setup-xvfb

Run your tests headlessly by enabling xvfb

6/10
pandaswhocode/rootly-incident-action

pandaswhocode/rootly-incident-action

Typescript action for creating rootly incidents (and alerts)

5/10
actions/cache/save

actions/cache/save

Cache dependencies and build outputs in GitHub Actions

7/10
grafana/k6-extension-actions/setup-k6lint

grafana/k6-extension-actions/setup-k6lint

Reusable composite GitHub actions to support k6 extension development.

6/10
step-security/mongodb-github-action

step-security/mongodb-github-action

Use MongoDB in GitHub Actions. Secure drop-in replacement for supercharge/mongodb-github-action.

10/10
Maintained by StepSecurity
binary-install/setup-x

binary-install/setup-x

GitHub Action to install binaries using binstaller-generated scripts with verification

4/10
dyladan/component-owners

dyladan/component-owners

Automatically add component owners as assignees and approvers to pull requests

2/10
pytorch/executorch/test-infra/.github/actions/setup-miniconda

pytorch/executorch/test-infra/.github/actions/setup-miniconda

On-device AI across mobile, embedded and edge for PyTorch

4/10
step-security/paths-filter/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/paths-filter/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Conditionally run actions based on files modified by PR, feature branch or pushed commits. Secure drop-in replacement for dorny/paths-filter.

10/10
seanmiddleditch/gha-setup-vsdevenv

seanmiddleditch/gha-setup-vsdevenv

GitHub Action to setup the VS dev environment for the job

6/10
google/osv-scanner-action/osv-scanner-action

google/osv-scanner-action/osv-scanner-action

8/10
replayio/action-upload

replayio/action-upload

GitHub Action to upload recordings to Replay.io

3/10
step-security/quarto-actions/setup

step-security/quarto-actions/setup

Secure drop-in replacement for quarto-dev/quarto-actions.

10/10
Maintained by StepSecurity
ljharb/actions/node/build

ljharb/actions/node/build

GitHub actions I use for CI.

4/10
dev-drprasad/delete-tag-and-release

dev-drprasad/delete-tag-and-release

3/10
vision-web3-foundation/ci-workflows/.github/actions/install-poetry

vision-web3-foundation/ci-workflows/.github/actions/install-poetry

3/10
actions-security-demo/pytorch/pytorch/.github/actions/setup-linux

actions-security-demo/pytorch/pytorch/.github/actions/setup-linux

Tensors and Dynamic neural networks in Python with strong GPU acceleration

3/10