Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

seagate/openSeaChest/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

seagate/openSeaChest/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Cross platform utilities useful for configuring features and assessing health on SATA, SAS, NVMe, and USB storage devices.

7/10
os-climate/osc-github-devops/.github/actions/python-project-audit-matrix

os-climate/osc-github-devops/.github/actions/python-project-audit-matrix

Template Python project, common tests, GitHub Actions/Workflows, linting tools

5/10
ethomson/send-tweet-action

ethomson/send-tweet-action

Send a tweet from a GitHub Action

2/10
Pandapip1/jekyll-label-action

Pandapip1/jekyll-label-action

Automatically add labels depending on Jekyll front matter attributes

5/10
ansible-actions/ansible-galaxy-action

ansible-actions/ansible-galaxy-action

This Action will import ansible roles on galaxy-ng

4/10
pytorch/test-infra/.github/actions/setup-miniconda

pytorch/test-infra/.github/actions/setup-miniconda

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

5/10
grafana/rollout-operator/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/rollout-operator/_shared-workflows-dockerhub-login/actions/get-vault-secrets

Kubernetes Rollout Operator

8/10
npalm/action-docs

npalm/action-docs

Generate docs for GitHub actions

3/10
Vendic/sendgrid-action

Vendic/sendgrid-action

Sendgrid action for GitHub Actions

0/10
pytorch/pytorch.github.io/test-infra/.github/actions/chown-directory

pytorch/pytorch.github.io/test-infra/.github/actions/chown-directory

The website for PyTorch

3/10
TencentCloud/tke-cluster-credential-action

TencentCloud/tke-cluster-credential-action

Retrieve TKE cluster credential and set it to $HOME/.kube/config.

1/10
hostwithquantum/setup-mc

hostwithquantum/setup-mc

A github action to download minio client (mc) in your workflows.

2/10
grafana/grafana-amazonprometheus-datasource/actions/commands

grafana/grafana-amazonprometheus-datasource/actions/commands

Prometheus Amazon Datasource

7/10
equinor/cc-components/.github/actions/pnpm-setup

equinor/cc-components/.github/actions/pnpm-setup

Components and apps for CC.

6/10
step-security/pull-request-comment-trigger/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/pull-request-comment-trigger/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A github action for detecting a "trigger" in a pull request description or comment. Secure drop-in replacement for Khan/pull-request-comment-trigger.

10/10
cyber-dojo/kosli-begin-trail

cyber-dojo/kosli-begin-trail

3/10
Ludy87/action/merge

Ludy87/action/merge

Actions yaml

4/10
ietf-tools/semver-action

ietf-tools/semver-action

GitHub Action to calculate the next release version based on conventional commits

6/10
ministryofjustice/analytical-platform-github-actions/clean-actions-runner

ministryofjustice/analytical-platform-github-actions/clean-actions-runner

Analytical Platform GitHub Actions • This repository is defined and managed in Terraform

8/10
jwgmeligmeyling/spotbugs-github-action

jwgmeligmeyling/spotbugs-github-action

Push SpotBugs results as check run annotations

2/10