Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

equinor/radix-github-actions

equinor/radix-github-actions

6/10
LouisBrunner/checks-action

LouisBrunner/checks-action

GitHub Action which wraps calls to GitHub Checks API

7/10
grafana/epimetheus/.github/promci/actions/setup_environment

grafana/epimetheus/.github/promci/actions/setup_environment

FrostDB backed Prometheus fork

3/10
NVIDIA/cuCollections/cuCollections/.github/actions/configure_cccl_sccache

NVIDIA/cuCollections/cuCollections/.github/actions/configure_cccl_sccache

8/10
nev7n/wait_for_response

nev7n/wait_for_response

Github action to wait for a response

3/10
yakubique/random-number

yakubique/random-number

Github Action that returns a random number

2/10
oxsecurity/megalinter/flavors/javascript

oxsecurity/megalinter/flavors/javascript

🦙 MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.

7/10
approved-3rd-party-actions/git-restore-mtime-action

approved-3rd-party-actions/git-restore-mtime-action

A GitHub Workflow Action which restores timestamps of files in the current tree

3/10
asymmetric-research/clusterfuzz-fuzzbot-builder

asymmetric-research/clusterfuzz-fuzzbot-builder

Build environment matching a FuzzBot running Ubuntu 22.04

4/10
rudderlabs/airbyte/.github/actions/run-dagger-pipeline

rudderlabs/airbyte/.github/actions/run-dagger-pipeline

Airbyte is an open-source EL(T) platform that helps you replicate your data in your warehouses, lakes and databases.

3/10
gr2m/merge-schedule-action

gr2m/merge-schedule-action

GitHub Action to merge pull requests on a scheduled day

3/10
coveo/ui-kit/.github/actions/cypress-atomic-insight-panel

coveo/ui-kit/.github/actions/cypress-atomic-insight-panel

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
stefanprodan/timoni/actions/setup

stefanprodan/timoni/actions/setup

Timoni is a package manager for Kubernetes, powered by CUE and inspired by Helm.

4/10
NVIDIA/Isaac-GR00T/.github/actions/setup-venv

NVIDIA/Isaac-GR00T/.github/actions/setup-venv

NVIDIA Isaac GR00T N1.5 - A Foundation Model for Generalist Robots.

5/10
coveooss/coveo-python-oss/.github/workflows/actions/post-publish

coveooss/coveo-python-oss/.github/workflows/actions/post-publish

This collection of general purpose python magic was too good to keep for ourselves!

5/10
OpenZeppelin/moonbeam/.github/workflow-templates/dev-tests

OpenZeppelin/moonbeam/.github/workflow-templates/dev-tests

An Ethereum-compatible smart contract parachain on Polkadot

2/10
pytorch/pytorch/pytorch/.github/actions/setup-linux

pytorch/pytorch/pytorch/.github/actions/setup-linux

Tensors and Dynamic neural networks in Python with strong GPU acceleration

6/10
step-security/publish-crates

step-security/publish-crates

GitHub action to get easy publishing of Rust crates. Secure drop-in replacement for katyo/publish-crates.

10/10
Maintained by StepSecurity
step-security/close-milestone/security/code-scanning

step-security/close-milestone/security/code-scanning

A Github action to remove a milestone by the milestone's name. Secure drop-in replacement for Akkjon/close-milestone.

10/10
actions-security-demo/grafana/.github/actions/setup-enterprise

actions-security-demo/grafana/.github/actions/setup-enterprise

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

3/10