Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
step-security/ssh-key-action/.
GitHub Action that installs SSH key to .ssh. Secure drop-in replacement for shimataro/ssh-key-action.
rasahq/setup-poetry
Github workflow to set up poetry
shrink/actions-docker-extract
:octocat: Extract file(s) from a Docker Image
dcodeio/setup-node-nvm
Set up your GitHub Actions workflow with a specific version of node.js using nvm.
wader/bump/action
A generic version tracking and update tool
julia-actions/julia-format
GitHub action for JuliaFormatter.jl
step-security/deployment-status
GitHub action to create a deployment status update. Secure drop-in replacement for chrnorm/deployment-status.
sidx1024/report-nyc-coverage-github-action
GitHub Action that posts the report in a comment on a GitHub Pull Request from coverage data generated by nyc (istanbul)
uniswap/ai-toolkit/.github/actions/build-plugin-config
๐ค AI Toolkit - Standardized setup for Claude Code AI workflows. Nx monorepo with reusable agents, commands, and generators for enhanced AI-assisted development.
aquaproj/registry-action/validate-json-schema
GitHub Actions for aqua Registry
cutenode/action-always-fail
An action that will always fail, so when working on developing actions you can easily re-run them even if your action succeeds.
trunk-io/trunk-action/setup
Trunk.io GitHub Action
project-tick/project-tick/.github/actions/meshmc/package/linux
Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick
nebularg/actions-luacheck
rashdamada/biomes-game/.github/actions/cached-pip-install
Biomes is an open source sandbox MMORPG built for the web using web technologies such as Next.js, Typescript, React and WebAssembly.
amartyajha/airbyte/.github/actions/image
The leading data integration platform for ETL / ELT data pipelines from APIs, databases & files to data warehouses, data lakes & data lakehouses. Both self-hosted and Cloud-hosted.
project-tick/project-tick/.github/actions/setup-dependencies
Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick
awalsh128/cache-apt-pkgs-action
Cache APT packages in GitHub Actions
sonarsource/sonarlint-intellij/.actions/get-build-number
SonarQube plugin for JetBrains IDEs providing code quality and security feedback directly in the IDE
kong/create-pull-request
A GitHub action to create a pull request for changes to your repository in the actions workspace