Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

philips-software/pull-request-report-action

philips-software/pull-request-report-action

GitHub action to collect Pull Request related Data and attached that as report to a Pull Request when it's merged.

2/10
fastai/fastpages

fastai/fastpages

An easy to use blogging platform, with enhanced support for Jupyter Notebooks.

4/10
step-security/assign-author

step-security/assign-author

GitHub Actions to assign author to issue or PR. Secure drop-in replacement for technote-space/assign-author.

10/10
Maintained by StepSecurity
neondatabase/dev-actions/release-pr-notify

neondatabase/dev-actions/release-pr-notify

6/10
ethomson/env-action

ethomson/env-action

2/10
slsa-framework/slsa-github-generator/.github/actions/rng

slsa-framework/slsa-github-generator/.github/actions/rng

Language-agnostic SLSA provenance generation for Github Actions

5/10
rudderlabs/rudder-sdk-kotlin/.github/actions/pr-title-check

rudderlabs/rudder-sdk-kotlin/.github/actions/pr-title-check

Kotlin Android SDK and Kotlin JVM for RudderStack - the Customer Data Platform for Developers.

6/10
yru-weighed/upload-artifact

yru-weighed/upload-artifact

2/10
olivernybroe/action-conflict-finder

olivernybroe/action-conflict-finder

A Github action for finding merge conflicts

3/10
jwalton/gh-docker-logs

jwalton/gh-docker-logs

GitHub Action to collect logs from all docker containers.

1/10
harden-runner-canary/kyverno/.github/actions/is-defined

harden-runner-canary/kyverno/.github/actions/is-defined

Kubernetes Native Policy Management

3/10
heisenberg-2077/use-npm-token-action

heisenberg-2077/use-npm-token-action

Use an NPM token within an .npmrc file inside GitHub actions. Scoped packages are the primary use case.

2/10
tjenkinson/gh-action-auto-merge-dependency-updates

tjenkinson/gh-action-auto-merge-dependency-updates

A GitHub action that will automatically approve and merge a PR that only contains dependency updates, based on some rules. Also possible to disable the merge and use the `success` output to use in combination with other actions.

2/10
Reality2byte/setup-python

Reality2byte/setup-python

Set up your GitHub Actions workflow with a specific version of Python

4/10
grafana/sqlds/actions/commands

grafana/sqlds/actions/commands

A package that assists writing SQL-driven datasources

7/10
pytorch/torchtitan/test-infra/.github/actions/setup-ssh

pytorch/torchtitan/test-infra/.github/actions/setup-ssh

A PyTorch native platform for training generative AI models

6/10
open-policy-agent/setup-regal

open-policy-agent/setup-regal

Run Regal, the OPA Rego Linter, as a GitHub Action

3/10
siemens/ix/.github/workflows/actions/storybook

siemens/ix/.github/workflows/actions/storybook

Siemens Industrial Experience is a design system for designers and developers, to consistently create the perfect digital experience for industrial software products.

6/10
actions-ecosystem/action-bump-semver

actions-ecosystem/action-bump-semver

⏫ GitHub Action to bump the semver version up

3/10
juliangruber/merge-pull-request-action

juliangruber/merge-pull-request-action

A simple GitHub Action for merging pull requests

1/10