Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
coveooss/terraform/.github/actions/go-version
Terraform enables you to safely and predictably create, change, and improve infrastructure. It is a source-available tool that codifies APIs into declarative configuration files that can be shared amongst team members, treated as code, edited, reviewed, and versioned.
hashicorp/setup-signore-package
testing the next iteration of setup-signore
step-security/setup-crate/__builder_checkout_dir__/.github/actions/secure-download-artifact
๐ฆ GitHub Action to install a Rust crate from a GitHub release. Secure drop-in replacement for extractions/setup-crate.
ai-dynamo/dynamo/.github/actions/skopeo-copy
A Datacenter Scale Distributed Inference Serving Framework
probablyup/wait-for-netlify-action
A GitHub action that will wait until a Netlify deploy is completed before continuing on
yonasbsd/buck2/.github/actions/publish_tag
Build system, successor to Buck
fastify/github-action-merge-dependabot
This action automatically approves and merges dependabot PRs
caffeelake/airbyte/.github/actions/get-dagger-engine-image
The leading data integration platform for ETL / ELT data pipelines from APIs, databases & files to data warehouses, data lakes & data lakehouses. Both self-hosted and Cloud-hosted.
coveord/spinnaker/.github/actions/publish-deb
Spinnaker is an open source, multi-cloud continuous delivery platform for releasing software changes with high velocity and confidence.
standardrb/standard-ruby-action
A GitHub Action to run Standard Ruby against your code.
github/codeql-action
Actions for running CodeQL analysis
smallstep/action-install-step-cli
A GitHub Action to install step CLI on Linux and MacOS.
nvidia/sparkucx/.github/workflows/signoff-check
A high-performance, scalable and efficient ShuffleManager plugin for Apache Spark, utilizing UCX communication layer
pullpreview/action
A GitHub Action that starts preview deployments for your pull requests and branches. It can work with any application that has a valid Docker Compose file. Also supports Helm charts.
ledgerhq/ledger-live/tools/actions/composites/turbo-step
Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.
coactions/setup-xvfb
Run your tests headlessly by enabling xvfb
gradle/actions/public-layout.tsx
A collection of GitHub Actions to accelerate your Gradle Builds on GitHub
action-pack/send-mail
Action to send an email.
pandaswhocode/rootly-incident-action
Typescript action for creating rootly incidents (and alerts)
actions/cache/save
Cache dependencies and build outputs in GitHub Actions