Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
grafana/tempo/actions/backport
Grafana Tempo is a high volume, minimal dependency distributed tracing backend.
2factorauth/issue-title-action
treosh/lighthouse-ci-action
Audit URLs using Lighthouse and test performance with Lighthouse CI.
contosoenterprise/variable-substitution
Enable GitHub developers to parameterize the values in their config files from a GitHub Action workflow
scribe-security/action-bom
Github action to Collect, Create and Store SBOM evidence
step-security/openapitools-generator-action
Generate a client library using the OpenAPITools Generator. Secure drop-in replacement for openapi-generators/openapitools-generator-action.
jfheinrich-eu/psono-secret-whisperer
A GitHub Action for securely retrieving secrets from PSONO server
step-security/upload-release-action
Upload files to a GitHub release. Secure drop-in replacement for svenstaro/upload-release-action.
cycjimmy/semantic-release-action
GitHub Action for Semantic Release
w3c/spec-prod
GitHub Action to build ReSpec/Bikeshed specs, validate output and publish to GitHub pages or W3C
christian-draeger/increment-semantic-version
stoplightio/spectral-action
GitHub Action wrapper for Spectral - a JSON/YAML/OpenAPI/AsyncAPI/etc linter with custom rule support.
google/osv-scanner-action/osv-reporter-action
appleboy/lambda-action
GitHub Action for Deploying Lambda code to an existing function
szkiba/xk6bundler
Bundle k6 with extensions as fast and easily as possible
chronograph-pe/configure-aws-credentials
Configure AWS credential environment variables for use in other GitHub Actions.
derberg/npm-dependency-manager-for-your-github-org
GitHub Action that handles automated update of dependencies in package.json between projects from the same GitHub organization.
actions-cool/verify-files-modify
⚡ Verify PR files modification by GitHub Action.
crazy-max/ghaction-virustotal
GitHub Action to upload and scan files with VirusTotal
grafana/k6-extension-actions/setup-k6registry
Reusable composite GitHub actions to support k6 extension development.