Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
portswigger-tim/safer-runner-action
A GitHub action to lockdown DNS, Network, sudo and Docker
edera-dev/cross/.github/actions/cargo-publish
“Zero setup” cross compilation and “cross testing” of Rust crates
korniltsev/actions-upload-release-asset
Yet Another Upload Release Asset Action
aerospike/shared-workflows/.github/actions/collect-build-artifacts
automation workflows
grafana/opentelemetry-ebpf-instrumentation/.github/actions/integration-test-image-build
docker/bake-action/subaction/xhcyo8/qqq
GitHub Action to use Docker Buildx Bake as a high-level build command
taktile-org/wretry.action
Retry action for Github CI
rubygems/configure-rubygems-credentials
Configure rubygems.org credential environment variables for use in other GitHub Actions.
nexusphp/no-merge-commits
Prevent merge commits in pull requests.
step-security/setup-applanga-cli/__builder_checkout_dir__/.github/actions/privacy-check
Secure drop-in replacement for applanga/setup-applanga-cli.
aerospike/aerospike-client-nodejs/.github/actions/run-ee-server
Node.js client for the Aerospike database
siemens/ix/.github/workflows/actions/visual-regression
Siemens Industrial Experience is a design system for designers and developers, to consistently create the perfect digital experience for industrial software products.
step-security/create-or-update-pull-request-action/__builder_checkout_dir__/.github/actions/secure-download-artifact
A GitHub Action to create or update a pull request based on local changes. Secure drop-in replacement for gr2m/create-or-update-pull-request-action.
diolor/github-action-markdown-link-check
Check all links in markdown files if they are alive or dead. 🔗✔️
yonasbsd/prql/.github/actions/time-compilation
PRQL is a modern language for transforming data — a simple, powerful, pipelined SQL replacement
codex-/return-dispatch
⚙️ Dispatch an action to a foreign repository and output the newly created run ID.
pytorch/pytorch/test-infra/.github/actions/pull-docker-image
Tensors and Dynamic neural networks in Python with strong GPU acceleration
diggerhq/digger
Digger is an open source IaC orchestration tool. Digger allows you to run IaC in your existing CI pipeline ⚡️
avular-robotics/fork-fetch-gh-release-asset
Github Action to download an asset from a Github release
chainguard-dev/actions/setup-knative
A collection of reusable Github Actions workflows.