Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

jimschubert/delete-artifacts

jimschubert/delete-artifacts

a tool to delete artifacts from GitHub workflows

3/10
endre-spotlab/fast-forward-js-action

endre-spotlab/fast-forward-js-action

1/10
repo-sync/github-sync

repo-sync/github-sync

⤵️ A GitHub Action for syncing current repository with remote

6/10
arduino/compile-sketches

arduino/compile-sketches

GitHub Actions action that checks whether Arduino sketches compile and produces a report of data from the compilations

8/10
cicirello/jacoco-badge-generator

cicirello/jacoco-badge-generator

Coverage badges, and pull request coverage checks, from JaCoCo reports in GitHub Actions

7/10
zgosalvez/github-actions-ensure-sha-pinned-actions

zgosalvez/github-actions-ensure-sha-pinned-actions

A Github Action to ensure that actions are pinned to full length commit SHAs

6/10
google/wireit

google/wireit

Wireit upgrades your npm/pnpm/yarn scripts to make them smarter and more efficient.

7/10
sarisia/actions-status-discord

sarisia/actions-status-discord

Post GitHub Actions status to Discord as an beautiful embed

7/10
crowdstrike/container-image-scan-action

crowdstrike/container-image-scan-action

CrowdStrike Container Image Scan Github Action

4/10
ossf/scorecard-action

ossf/scorecard-action

Official GitHub Action for OpenSSF Scorecard.

10/10
chrnorm/deployment-action

chrnorm/deployment-action

GitHub action to create a Deployment

3/10
teleport-actions/auth

teleport-actions/auth

GitHub Action for authenticating with Teleport

2/10
actions/checkout

actions/checkout

Action for checking out a repo

6/10
actions-cool/maintain-one-comment

actions-cool/maintain-one-comment

📌 Maintain just one comment in Issue and PR by GitHub Action.

3/10
github/codeql-action/autobuild

github/codeql-action/autobuild

Actions for running CodeQL analysis

8/10
anchore/scan-action/download-grype

anchore/scan-action/download-grype

Anchore container analysis and scan provided as a GitHub Action

7/10
haya14busa/action-bumpr

haya14busa/action-bumpr

💥 Bump semantic version tag on merging Pull Requests with specific lables.

5/10
mhausenblas/mkdocs-deploy-gh-pages

mhausenblas/mkdocs-deploy-gh-pages

GitHub Action to deploy an MkDocs site to GitHub Pages

5/10
crazy-max/ghaction-github-labeler

crazy-max/ghaction-github-labeler

GitHub Action to manage labels on GitHub

6/10
cloudposse/github-action-terratest

cloudposse/github-action-terratest

A GitHub action that runs terratest tests within the repo

6/10