Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
koj-co/release-scheduler
🚂 Schedule a weekly or monthly Semantic Release
dsanders11/project-actions/add-item
A collection of actions for automating GitHub projects
rubenesp87/semver-validation-action
SEMVER validation Github Action
anmol098/waka-readme-stats
This GitHub action helps to add cool dev metrics to your github profile Readme
graycoreio/github-actions-magento2/get-magento-version
Github Actions and Workflows that make maintaining Magento2 projects and modules easier.
lfreleng-actions/maven-build-action
Action to build Maven projects
nam20485/docs-1/.github/actions/clone-translations
The open-source repo for docs.github.com
sgammon/verify-hashes
Library, CLI, and GitHub Action for verifying hashes
asymmetric-research/clusterfuzz-fuzzbot-builder/assets/brand/step-security-icon.svg
Build environment matching a FuzzBot running Ubuntu 22.04
udoprog/kick
The omnibus project management tool
TimSchoenle/gradle-jextract/.github/actions/setup-base-environment
A Gradle plugin that automates the download and execution of jextract to generate Java Foreign Function & Memory (FFM) API bindings from C header files with bundled library loading support.
step-security/test-summary-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Show a helpful summary of test results in GitHub Actions CI/CD workflow runs. Secure drop-in replacement for test-summary/action.
yonasBSD/trilium/.github/actions/deploy-to-cloudflare-pages
Build your personal knowledge base with Trilium Notes
ZscalerCWP/Zscaler-IaC-Action
step-security/sticky-pull-request-comment
Create comment on pull request, if exists update that comment. Secure drop-in replacement for marocchino/sticky-pull-request-comment.
42Crunch/api-security-audit-action
slsa-framework/slsa-github-generator/actions/delegator/setup-generic
Language-agnostic SLSA provenance generation for Github Actions
NVIDIA-RTX/godot/.github/actions/godot-build
NVIDIA fork of Godot Engine – Multi-platform 2D and 3D game engine
step-security/actions-comment-pull-request/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
GitHub action to comment pull request. Secure drop-in replacement for thollander/actions-comment-pull-request.
timheuer/base64-to-file
Take a base64 string and decodes to a file for use in arguments in later actions.