Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

hashicorp/tfc-workflows-github

hashicorp/tfc-workflows-github

HCP Terraform starter workflows and github actions to automate Terraform Cloud CI/CD pipelines.

7/10
egor-tensin/vs-shell

egor-tensin/vs-shell

GitHub action to set up the Visual Studio shell environment

4/10
FirebaseExtended/action-hosting-deploy

FirebaseExtended/action-hosting-deploy

Automatically deploy shareable previews for your Firebase Hosting sites

3/10
coveo/ui-kit/.github/actions/e2e-stencil

coveo/ui-kit/.github/actions/e2e-stencil

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
slsa-framework/slsa-github-generator/.github/actions/verify-token

slsa-framework/slsa-github-generator/.github/actions/verify-token

Language-agnostic SLSA provenance generation for Github Actions

5/10
Codesee-io/codesee-action

Codesee-io/codesee-action

3/10
snapshift/action-check-typescript

snapshift/action-check-typescript

2/10
grafana/synthetic-monitoring-agent/.github/actions/go-cache-save

grafana/synthetic-monitoring-agent/.github/actions/go-cache-save

Synthetic Monitoring agent

7/10
dtolnay/install

dtolnay/install

Fast `cargo install` action using a GitHub-based binary cache and attestations

3/10
rematocorp/open-pull-request-action

rematocorp/open-pull-request-action

GitHub action for automatically creating a pull request

3/10
winterjung/split

winterjung/split

GitHub action to split string

3/10
pypa/gh-action-pip-audit

pypa/gh-action-pip-audit

A GitHub Action for pip-audit

6/10
grafana/falconlogscale-datasource/actions/commands

grafana/falconlogscale-datasource/actions/commands

Falcon LogScale data source for Grafana

7/10
grafana/issue-team-scheduler/regex-labeler

grafana/issue-team-scheduler/regex-labeler

5/10
php-actions/phpstan

php-actions/phpstan

PHP Static Analysis in Github Actions.

3/10
peter-murray/terragrunt-github-action

peter-murray/terragrunt-github-action

GitHub action for setting up Terragrunt https://terragrunt.gruntwork.io

2/10
salsa-rs/salsa

salsa-rs/salsa

A generic framework for on-demand, incrementalized computation. Inspired by adapton, glimmer, and rustc's query system.

6/10
jidicula/go-fuzz-action

jidicula/go-fuzz-action

GitHub Action for Go 1.18 fuzz testing

4/10
coverallsapp/github-action

coverallsapp/github-action

Coveralls Github Action

6/10
hashicorp/tfc-workflows-github/actions/plan-output

hashicorp/tfc-workflows-github/actions/plan-output

HCP Terraform starter workflows and github actions to automate Terraform Cloud CI/CD pipelines.

7/10