Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
ffurrer2/extract-release-notes
A GitHub Action to extract release notes from a "Keep a Changelog" formatted changelog file
step-security/npm-get-version-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
This Action scans for a package.json file and reads the version number from that. Secure drop-in replacement for martinbeentjes/npm-get-version-action.
snyk/actions/python-3.8
A set of GitHub actions for checking your projects for vulnerabilities.
open-edge-platform/geti-ci/actions/bandit
A public-facing, centralized place to store reusable workflows and actions used by Geti projects.
anz-bank/go-pkcs12/.github/action/github-tag-action
hashicorp/consul-k8s
First-class support for Consul Service Mesh on Kubernetes
ARM-software/cmsis-actions/setup-vcpkg
Custom GitHub actions for MDK / AVH-FVP CI workflows
yonasBSD/vector/.github/actions/install-vdev
A high-performance observability data pipeline.
TomTomB/changesets-action
JoshuaTheMiller/conditional-build-matrix
A GitHub Action that enables easier conditional matrix builds!
catchpoint/workflow-telemetry-action
Github action to collect metrics (CPU, memory, I/O, etc ...) from your workflows to help you debug and optimize your CI/CD pipeline
Dargon789/blockscout/.github/actions/setup-repo
Blockchain explorer for Ethereum based network and a tool for inspecting and analyzing EVM based blockchains.
org-efernandes-ppb/actions-system-info
This action provides GitHub Actions runner OS information.
step-security/s3-actions-cache
Cache to S3 storage with official actions/cache@v2 fallback. Secure drop-in replacement for tespkg/actions-cache.
equinor/farfetched-actions/fusion-deploy
Reusable GitHub Actions and Workflows
step-security/cirruslabs-cache
Cache dependencies and build outputs in GitHub Actions. Secure drop-in replacement for cirruslabs/cache.
stCarolas/setup-maven/api/download
Set up your GitHub Actions workflow with a specific version of Apache Maven
Git-Hub-Chris/VisualStudioCode/actions/classifier-deep/monitor
Microsoft Visual Studio Code.
yonasBSD/duckdb/.github/actions/build_extensions
DuckDB is an analytical in-process SQL database management system
mikepenz/action-junit-report
Reports junit test results as GitHub Pull Request Check