Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
mshick/add-pr-comment
uses: mshick/add-pr-comment@v2
expo/expo-github-action
Expo GitHub Action makes it easy to automate EAS builds or updates
tfsec/tfsec-sarif-action
micronaut-projects/github-actions/graalvm/build
grafana/writers-toolkit/publish-technical-documentation
Technical documentation guidelines for Grafana Labs documentation
rockem/create-opsgenie-alert-action
GiHub action for creating new alert in OpsGenie
taiki-e/checkout-action
GitHub Action for checking out a repository. (Simplified actions/checkout alternative that does not depend on Node.js.)
yonasBSD/pre-commit/.github/actions/pre-test
A framework for managing and maintaining multi-language pre-commit hooks.
step-security/release-drafter/docker
Drafts your next release notes as pull requests are merged into master. Secure drop-in replacement for release-drafter/release-drafter.
obrassard/action-sharepoint-publish
Github Action that create an archive of a repository and upload it to a Sharepoint library
technote-space/get-diff-action
GitHub Actions to get git diff
wollomatic/socket-proxy
Secure-by-design and flexible Unix socket proxy. Built in memory-safe Go with zero dependencies, no shell or interpreter required in containers. A modern alternative to tecnativa/docker-socket-proxy and linuxserver/docker-socket-proxy, with powerful regex-based configuration.
samuelmeuli/action-snapcraft
🐦 GitHub Action for setting up Snapcraft
pytorch/torchft/test-infra/.github/actions/calculate-docker-image
Fault tolerance for PyTorch (HSDP, LocalSGD, DiLoCo, Streaming DiLoCo)
knope-dev/action
ossf/scorecard-monitor
Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-content/plugins/column-shortcodes/assets
This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.
grafana/mimir/operations/mimir-rules-action
Grafana Mimir provides horizontally scalable, highly available, multi-tenant, long-term storage for Prometheus.
NVIDIA/onnxruntime/.github/actions/webgpu-validate-shader-key
ONNX Runtime: cross-platform, high performance ML inferencing and training accelerator
Olivr/copybara-action
Transform and move code between repositories. Start with ZERO config and 100% customizable.