Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
filipstefansson/set-npm-token-action
GitHub Action to create a .npmrc file with your NPM token inside it.
contrast-security-oss/actionbot
Checks your workflows for actions that don't meet a defined allow/prohibit policy
micronaut-projects/github-actions/pre-release
getsentry/action-setup-volta
a github action to set up volta and its caches
jofthev/docs/.github/actions/warmup-remotejson-cache
The open-source repo for docs.github.com
ministryofjustice/laa-review-criminal-legal-aid/.github/actions/deploy
A service to review criminal legal aid applications
fallard84/paths-filter
Conditionally run actions based on files modified by PR, feature branch or pushed commits
envoyproxy/toolshed/gh-actions/diskspace
09168806659/metaplex-program-library/.github/actions/program/auctioneer
Smart contracts maintained by the Metaplex team
adyen/adyen-swift-public-api-diff
This tool allows comparing 2 versions of a swift (sdk) project and lists all changes in a human readable way.
elastic/elastic-otel-python/.github/actions/action-info.client.tsx
step-security/action-slack-notify
GitHub Action for sending a notification to a Slack channel. Secure drop-in replacement for rtCamp/action-slack-notify.
ministryofjustice/devsecops-actions/sca/trufflehog
A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.
rstackjs/rspack-toolchain/get-napi-info
A collection of reusable GitHub Actions for building and distributing Rspack native bindings across multiple platforms.
raycast/github-actions/git-commit
sigstore/scaffolding/actions/setup
Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.
step-security/github-action-aerospike/_next/static/chunks/6617-65d41b0b2a5d0e54.js
GitHub Action to set up an Aerospike database. Secure drop-in replacement for reugn/github-action-aerospike.
snyk/actions/python-3.13
A set of GitHub actions for checking your projects for vulnerabilities.
grafana/tanka/.github/actions/setup-goversion
Flexible, reusable and concise configuration for Kubernetes
devantler-tech/ksail/.github/actions/ksail-tenant-test
All-in-one Kubernetes SDK: create, manage, and operate clusters across distributions (Kind, K3d, Talos, VCluster) with built-in GitOps, secrets, AI assistant, and MCP server. Only requires Docker or a Cloud Provider.