Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
actions-security-demo/script-injection/actions/remove-milestone
monry/actions-get-issue-id
Get Issue Id
transferwise/actions-pr-checker
Github Action to check PR title/description/labels.
grafana/loki/_shared-workflows-dockerhub-login/actions/get-vault-secrets
Like Prometheus, but for logs.
ko-build/setup-ko
raycast/github-actions/changelog-enforcer
rapidsai/velox-testing/.github/actions/resolve-commits
step-security/setup-swift
GitHub Action to setup Swift environment. Secure drop-in replacement for SwiftyLab/setup-swift.
caffeelake/external-secrets/.github/actions/sign
External Secrets Operator reads information from a third-party service like AWS Secrets Manager and automatically injects the values as Kubernetes Secrets.
step-security/set-github-variable
Use this Github Action to update a variable in your Github Action Workflows for your repository. Secure drop-in replacement for mmoyaferrer/set-github-variable.
cisagov/action-lineage
grafana/prometheus/.github/promci/actions/publish_main
The Prometheus monitoring system and time series database.
bats-core/bats-action
Github action that setup Bats and all the bats libs: support, assert, detik, file.
optum/booster/.github/actions/public-layout.tsx
Booster Cloud Framework
microsoft/powerplatform-actions/who-am-i
Power Platform GitHub Actions automate common build and deployment tasks related to Power Platform. This includes synchronization of solution metadata (a.k.a. solutions) between development environments and source control, generating build artifacts, deploying to downstream environments, provisioning/de-provisioning of environments, and the ability to perform static analysis checks against your solution using the PowerApps checker service.
duplocloud/actions
Shared Github Actions for common situations.
neondatabase/neon/.github/actions/run-python-test-set
Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, code-like database branching, and scale to zero.
optum/booster/.github/actions/call-rush
Booster Cloud Framework
step-security/auto-unapprove/__builder_checkout_dir__/.github/actions/secure-download-artifact
Secure drop-in replacement for RotemK1/auto-unapprove.