Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

ljharb/actions/bun/install

ljharb/actions/bun/install

GitHub actions I use for CI.

4/10
dustico/dusti-lock

dustico/dusti-lock

DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.

4/10
Platane/snk/svg-only

Platane/snk/svg-only

🟩⬜ Generates a snake game from a github user contributions graph and output a screen capture as animated svg or gif

5/10
mig4/setup-bats

mig4/setup-bats

GitHub Action to setup BATS testing framework

3/10
elastic/terranova/.github/workflows/env-install

elastic/terranova/.github/workflows/env-install

Terranova is a thin wrapper for Terraform that provides extra tools and logic to handle Terraform configurations at scale.

8/10
buildjet/cache

buildjet/cache

Cache dependencies and build outputs in GitHub Actions

3/10
borales/actions-yarn

borales/actions-yarn

GitHub Action for interacting with yarn

7/10
ramsey/composer-install

ramsey/composer-install

:gift: A GitHub Action to streamline installation of PHP dependencies with Composer.

6/10
cachix/install-nix-action

cachix/install-nix-action

Installs Nix on GitHub Actions for the supported platforms: Linux and macOS.

7/10
newrelic/deployment-marker-action

newrelic/deployment-marker-action

Github Action for recording a Deployment Marker in New Relic

6/10
sunnysid3up/python-linter

sunnysid3up/python-linter

A GitHub Action which ensures Python code quality and supports customizable strictness.

2/10
elastic/clients-team-automations/issues_stats

elastic/clients-team-automations/issues_stats

Contains shared reusable GitHub Actions workflows of the clients team.

5/10
chronograph-pe/setup-node

chronograph-pe/setup-node

Set up your GitHub Actions workflow with a specific version of node.js

2/10
magefile/mage-action

magefile/mage-action

GitHub Action for Mage

6/10
Ludy87/action/pr-issues-title-check

Ludy87/action/pr-issues-title-check

Actions yaml

5/10
jtdor/build-deb-action

jtdor/build-deb-action

GitHub action for building Debian packages with dpkg-buildpackage.

4/10
hashicorp/vault-action

hashicorp/vault-action

A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.

8/10
ariga/setup-atlas

ariga/setup-atlas

A GitHub Action to install ariga/atlas in your workflows.

4/10
tj-actions/changed

tj-actions/changed

:octocat: Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories.

9/10
LedgerHQ/ledger-live/tools/actions/composites/setup-test-desktop

LedgerHQ/ledger-live/tools/actions/composites/setup-test-desktop

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10