Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
grafana/grafana/.github/actions/website-sync
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
step-security/setup-applanga-cli
Secure drop-in replacement for applanga/setup-applanga-cli.
slsa-framework/slsa-github-generator/.github/actions/secure-download-folder
Language-agnostic SLSA provenance generation for Github Actions
repo-sync/pull-request
โคต๏ธ A GitHub Action for creating pull requests
sslcom/actions-codesigner
GitHub Action for CodeSigner by SSL.com
jakoch/install-vulkan-sdk-action
A Github Action to install the current Vulkan SDK and runtime library. It also supports installing SwiftShader and Lavapipe software rasterizers.
securego/gosec
Go security checker
fantasticfiasco/action-update-license-year
GitHub Action that in a pull request updates the copyright year(s) in your license file.
haskell/actions/setup
Github actions for Haskell CI
canonical/action-publish
A Github action for publishing snaps
grafana/mimir-loki/lib/actions/install-binary
Like Prometheus, but for logs.
step-security/ghaction-github-status/__builder_checkout_dir__/.github/actions/secure-download-artifact
GitHub Action to check GitHub Status in your workflow. Secure drop-in replacement for crazy-max/ghaction-github-status.
koj-co/dependabot-pr-action
๐ฆ Label, approve, and merge Dependabot pull requests automatically
nvidia/spark-rapids-common/signoff-check
Reusable GitHub Actions workflows and common scripts for Spark RAPIDS
allure-framework/setup-allurectl
Set up your GitHub Actions workflow with a specific version of allurectl
comfy-org/comfy-action
Sets up ComfyUI on MacOS/Linux/Windows and runs a workflow json.
huang-julien/reproduire-sur-stackblitz
Github Action send a stackblitz link to a github repo for reproductions
bufbuild/buf-setup-action
scalacenter/sbt-dependency-submission
A Github Action to submit the dependency graph of an sbt build to the Dependency Submission API
reviewdog/action-tfsec
Run tfsec with reviewdog on pull requests to enforce security best practices