Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
step-security/action-gh-release/__builder_checkout_dir__/.github/actions/secure-download-artifact
GitHub Action for creating GitHub Releases. Secure drop-in replacement for softprops/action-gh-release.
stainless-api/trigger-release-please
GitHub action that runs Release Please externally
enricomi/publish-unit-test-result-action/v2.18.0
GitHub Action to publish unit test results on GitHub
ledgerhq/ledger-live/tools/actions/composites/setup-android-env
Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.
grafana/synthetic-monitoring-api-go-client/_shared-workflows-publish-techdocs/actions/aws-auth
Go client for Synthetic Monitoring
step-security/docker-login-action/__builder_checkout_dir__/.github/actions/privacy-check
GitHub Action to login against a Docker registry. Secure drop-in replacement for docker/login-action.
aws-actions/codeguru-security
pytorch/pytorch-integration-testing/test-infra/.github/actions/setup-ssh
Testing downstream libraries using pytorch release candidates
green-coding-solutions/eco-ci-energy-estimation
Eco CI Energy estimation for Github Actions, GitLab and Jenkins
yonasbsd/sccache/.github/actions/artifact_failure
Sccache is a ccache-like tool. It is used as a compiler wrapper and avoids compilation when possible. Sccache has the capability to utilize caching in remote storage environments, including various cloud storage options, or alternatively, in local storage.
snyk/actions/gradle-jdk16
A set of GitHub actions for checking your projects for vulnerabilities.
vexxhost/github-actions/scan-image
Common GitHub actions workflows
yonasbsd/wazuh/.github/actions/image
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
sonarsource/sonarlint-vscode/.github/actions/ovsx-publish
SonarQube extension for Visual Studio Code providing code quality and security feedback directly in the editor
sonarsource/sonar-scanner-msbuild/.actions/get-build-number
SonarScanner for .NET
dannyhw/storybook-chromatic-link-comment
step-security/short-sha
Github Action to shorten the git SHA1 and make it accessible in outputs. Secure drop-in replacement for benjlevesque/short-sha.
nvidia/spark-rapids-common/pr-description-check
Reusable GitHub Actions workflows and common scripts for Spark RAPIDS
kentaro-m/auto-assign-action
An action which adds reviewers to the pull request when the pull request is opened.
vendic/github-regex-extract-action
Extract matches from a text using regex