Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

conda-forge/automerge-action

conda-forge/automerge-action

GitHub action for automerging PRs

4/10
NeuraLegion/stop-scan

NeuraLegion/stop-scan

Action stops a NeuraLegion scan

2/10
grafana/shared-workflows/actions/get-latest-workflow-artifact

grafana/shared-workflows/actions/get-latest-workflow-artifact

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
issue-ops/validator

issue-ops/validator

Validate issue forms response using custom rules

6/10
aerospike/aerospike-client-java/.github/actions/make-server-matrix

aerospike/aerospike-client-java/.github/actions/make-server-matrix

Aerospike Java Client Library

5/10
step-security/jest-coverage-action-demo/windows/bash

step-security/jest-coverage-action-demo/windows/bash

8/10
jakebailey/pyright-action

jakebailey/pyright-action

GitHub Action for pyright

4/10
step-security/github-actions-ensure-sha-pinned-actions/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/github-actions-ensure-sha-pinned-actions/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A Github Action to ensure that actions are pinned to full length commit SHAs. Secure drop-in replacement for zgosalvez/github-actions-ensure-sha-pinned-actions.

10/10
oznu/gh-wiki-edit-discord-notification

oznu/gh-wiki-edit-discord-notification

GitHub Action to notify a Discord channel when someone edits the project wiki.

0/10
apecloud-inc/auto-approve-action

apecloud-inc/auto-approve-action

👍 GitHub Action for automatically approving GitHub pull requests

2/10
Vendic/magento2-google-address-autocomplete/.github/actions/setup

Vendic/magento2-google-address-autocomplete/.github/actions/setup

3/10
broadsage-containers/docker-template/.github/actions/build-metadata

broadsage-containers/docker-template/.github/actions/build-metadata

This template used to develop build logic for templating pipeline repositories

5/10
chainguard-images/actions/release-monitoring

chainguard-images/actions/release-monitoring

GitHub actions for the chainguard-images

8/10
OpenElements/hedera-solo-action

OpenElements/hedera-solo-action

A GitHub Action for setting up a Hiero based network for tests

7/10
anysphere/cancel-workflow-action

anysphere/cancel-workflow-action

⏹️ GitHub Action to cancel previous running workflows on push

3/10
momentohq/standards-and-practices/github-actions/shared-build

momentohq/standards-and-practices/github-actions/shared-build

Information about how we organize, maintain, and release open source software at Momento

3/10
envoyproxy/toolshed/gh-actions/retest

envoyproxy/toolshed/gh-actions/retest

6/10
actions/jekyll-build-pages

actions/jekyll-build-pages

A simple GitHub Action for producing Jekyll build artifacts compatible with GitHub Pages.

7/10
chaos-mesh/chaos-mesh-actions

chaos-mesh/chaos-mesh-actions

3/10
guilhermetod/semantic-release-notes-preview

guilhermetod/semantic-release-notes-preview

A GitHub Action for previewing the release notes that will be generated by a given pull request

3/10