Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

chains-project/maven-lockfile

chains-project/maven-lockfile

Lockfiles for Maven. Pin your dependencies. Build with integrity.

5/10
pat-s/always-upload-cache

pat-s/always-upload-cache

Cache dependencies and build outputs in GitHub Actions

3/10
os-climate/osc-github-devops/.github/actions/python-test-action

os-climate/osc-github-devops/.github/actions/python-test-action

Template Python project, common tests, GitHub Actions/Workflows, linting tools

6/10
Shopify/task-list-checker

Shopify/task-list-checker

GitHub Action for checking pull requests for incomplete task list items.

3/10
kubernetes-sigs/release-actions/setup-tejolote

kubernetes-sigs/release-actions/setup-tejolote

A set of reusable GitHub actions based on the Kubernetes Release Engineering Tooling

7/10
zaproxy/action-baseline

zaproxy/action-baseline

A GitHub Action for running the ZAP Baseline scan

5/10
swaggerexpert/swagger-editor-validate

swaggerexpert/swagger-editor-validate

This GitHub Actions validates OpenAPI (OAS) definition file using Swagger Editor.

7/10
chains-project/dirty-waters-action

chains-project/dirty-waters-action

Break the build if your supply chain is dirty

5/10
myrotvorets/composite-actions/node-run-script

myrotvorets/composite-actions/node-run-script

Composite actions used by our workflows

4/10
Yuri6037/Action-FakeTTY

Yuri6037/Action-FakeTTY

FakeTTY GitHub Action

3/10
quotidian-ennui/actions-olio/repo-dispatch

quotidian-ennui/actions-olio/repo-dispatch

It's a gallimaufry of actions

6/10
step-security/ghaction-setup-docker

step-security/ghaction-setup-docker

GitHub Action to set up (download and install) Docker CE

10/10
Maintained by StepSecurity
chronograph-pe/helmfile-action

chronograph-pe/helmfile-action

helmfile-action

3/10
chainguard-dev/digestabot

chainguard-dev/digestabot

Github Action to automatically update digests for container images.

6/10
suo/flake8-github-action

suo/flake8-github-action

A GitHub Action to run flake8 and annotate lint failures

3/10
feiskyer/ChatGPT-Reviewer

feiskyer/ChatGPT-Reviewer

Automated pull requests reviewing and issues triaging with ChatGPT.

4/10
pytorch/torchchat/test-infra/.github/actions/setup-ssh

pytorch/torchchat/test-infra/.github/actions/setup-ssh

Run PyTorch LLMs locally on servers, desktop and mobile

5/10
danielpalme/ReportGenerator-GitHub-Action

danielpalme/ReportGenerator-GitHub-Action

GitHub Action for ReportGenerator

6/10
fortify/github-action

fortify/github-action

Fortify GitHub Actions

5/10
terraform-docs/terraform-docs

terraform-docs/terraform-docs

Generate documentation from Terraform modules in various output formats

5/10