Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/actions-comment-pull-request

step-security/actions-comment-pull-request

GitHub action to comment pull request. Secure drop-in replacement for thollander/actions-comment-pull-request.

10/10
Maintained by StepSecurity
ipdxco/unified-github-workflows/.github/actions/read-config

ipdxco/unified-github-workflows/.github/actions/read-config

Automatically distribute GitHub Actions workflow across repositories.

5/10
bitovi/github-actions-storybook-to-github-pages

bitovi/github-actions-storybook-to-github-pages

Deploy a Storybook build to GitHub Pages

5/10
armory-io/astrolabe-build-defaults

armory-io/astrolabe-build-defaults

2/10
VachaShah/backport

VachaShah/backport

🔙 GitHub Action to backport pull requests

4/10
srvaroa/labeler

srvaroa/labeler

Label manager for PRs and Issues based on configurable conditions

3/10
opcr-io/policy-logout-action

opcr-io/policy-logout-action

policy-logout-action

3/10
JulienKode/team-labeler-action

JulienKode/team-labeler-action

⚡️ Github action to label your pull requests based on the author name ⚡️

4/10
PandasWhoCode/read-all-custom-properties

PandasWhoCode/read-all-custom-properties

Action to read all custom properties in an organization.

6/10
Tsukimarf/claude-code-security-review

Tsukimarf/claude-code-security-review

An AI-powered security review GitHub Action using Claude to analyze code changes for security vulnerabilities.

3/10
step-security/setup-class-hash/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/setup-class-hash/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Github Action for making starknet-class-hash available in your workflows. Secure drop-in replacement for ericnordelo/setup-class-hash.

10/10
step-security/create-json/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/create-json/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Github Action to create a .json file to use in other steps of the workflow. Secure drop-in replacement for jsdaniell/create-json.

10/10
metcalfc/changelog-generator

metcalfc/changelog-generator

GitHub Action to generate changelogs, release notes, whatever

7/10
emibcn/badge-action

emibcn/badge-action

Create a badge using GitHub Actions and GitHub Workflow CPU time (no 3rd parties servers)

4/10
pnpm/action-setup

pnpm/action-setup

Install pnpm package manager

6/10
pytorch/test-infra/test-infra/.github/actions/export-matrix-variables

pytorch/test-infra/test-infra/.github/actions/export-matrix-variables

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
sasobadovinac/meshlab/.github/actions/1_build

sasobadovinac/meshlab/.github/actions/1_build

The open source mesh processing system

3/10
dkamm/pr-quiz

dkamm/pr-quiz

A GitHub Action that uses AI to generate a quiz from your pull request

2/10
step-security/test-reporter

step-security/test-reporter

Displays test results from popular testing frameworks directly in GitHub. Secure drop-in replacement for dorny/test-reporter.

10/10
Maintained by StepSecurity
aarcangeli/load-dotenv

aarcangeli/load-dotenv

Read .env file and export variables to $GITHUB_ENV

3/10