Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

rlespinasse/github-slug-action

rlespinasse/github-slug-action

GitHub Action to expose slug value of GitHub environment variables inside your GitHub workflow

7/10
fluxcd/pkg/actions/yq

fluxcd/pkg/actions/yq

GitOps Toolkit Go SDK

8/10
graalvm/setup-graalvm

graalvm/setup-graalvm

Set up your GitHub Actions workflow with a specific GraalVM distribution.

8/10
pytorch/captum/test-infra/.github/actions/teardown-linux

pytorch/captum/test-infra/.github/actions/teardown-linux

Model interpretability and understanding for PyTorch

3/10
microsoft/vstest

microsoft/vstest

Visual Studio Test Platform is the runner and engine that powers test explorer and vstest.console.

7/10
Illbjorn/setup-task

Illbjorn/setup-task

A GitHub Action to set up Taskfile.

2/10
whelk-io/maven-settings-xml-action

whelk-io/maven-settings-xml-action

Github Action to create maven settings (~/.m2/settings.xml)

3/10
step-security/allure-report-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/allure-report-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Allure Report action with history. Secure drop-in replacement for simple-elf/allure-report-action.

10/10
chainguard-dev/actions/apt-faster

chainguard-dev/actions/apt-faster

A collection of reusable Github Actions workflows.

8/10
electron/github-app-auth-action

electron/github-app-auth-action

6/10
step-security/action-actionlint/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/action-actionlint/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

run actionlint with reviewdog. Secure drop-in replacement for reviewdog/action-actionlint.

10/10
lfreleng-actions/path-check-action

lfreleng-actions/path-check-action

Check if a given path exists in the repository, reports type

6/10
hyperledger-tooling/github-contributors-action

hyperledger-tooling/github-contributors-action

GitHub action to fetch contributors

4/10
Vendic/github-add-changelog-action

Vendic/github-add-changelog-action

Extract changelog entries and add to CHANGELOG.md

1/10
step-security/jest-coverage-action-demo/composite

step-security/jest-coverage-action-demo/composite

8/10
jedsalazar/cg-actions/matrix-extra-inputs

jedsalazar/cg-actions/matrix-extra-inputs

A collection of reusable Github Actions workflows.

3/10
circlefin/evm-cpn-contracts/.github/actions/setup

circlefin/evm-cpn-contracts/.github/actions/setup

Official repository for all EVM-compatible smart contracts used by the Circle Payments Network

5/10
grafana/grafana-image-renderer/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/grafana-image-renderer/_shared-workflows-dockerhub-login/actions/get-vault-secrets

A Grafana backend service that handles rendering of panels & dashboards to PNGs using headless browser (Chromium/Chrome)

7/10
Azure/pipelines

Azure/pipelines

Enable GitHub developers to trigger Azure Pipelines from a GitHub Actions workflow

4/10
step-security/woke-action-reviewdog/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/woke-action-reviewdog/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

woke GitHub Action using reviewdog. Secure drop-in replacement for get-woke/woke-action-reviewdog.

10/10