Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
exodusmovement/compressed-size-action
GitHub Action that adds compressed size changes to your PRs.
sfackler/actions/rustup
khan/pull-request-comment-trigger
A github action for detecting a "trigger" in a pull request description or comment
viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/marocchino-sticky-pull-request-comment
Mirror from https://github.com/marocchino/sticky-pull-request-comment
teleport-actions/auth-k8s
GitHub Action for Teleport Kubernetes Access
step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-json/wp/v2/pages
This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.
ministryofjustice/action-setup-container-structure-test
Composite action for installing Google's Container Structure Test
jidicula/clang-format-action
GitHub Action for clang-format checking
acryldata/sane-checkout-action
step-security/semver-action
GitHub Action to calculate the next release version based on conventional commits. Secure drop-in replacement for ietf-tools/semver-action.
kong/slsa-github-generator/__builder_checkout_dir__/.github/actions/compute-sha256
Language-agnostic SLSA provenance generation for Github Actions
mfinelli/setup-shfmt
github action to install shfmt
kawax/composer-update-action
GitHub Actions
ministryofjustice/laa-data-claims-api/.github/actions/get_release_name
LAA Data Claims API
nodoubtz-record-label/pipelines/.github/actions/create-cluster
Machine Learning Pipelines for Kubeflow
satackey/action-docker-layer-caching
[CAUTION] This repository is not actively maintained. / Enable Docker layer caching in your GitHub Actions workflow.
step-security/slackify-markdown-action
GitHub Action to convert markdown into Slack's mrkdwn. Secure drop-in replacement for LoveToKnow/slackify-markdown-action.
veracode/veracode-uploadandscan-action
This action uploads and scans code to Veracode for a static policy (or sandbox) scan.
azure/docker-login
GitHub action to log in to Azure Container Registry (ACR) or any private container registry
elastic/cloudbeat/.github/actions/image
Analyzing Cloud Security Posture