Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
nvidia/nautobot-app-nvdatamodels/.github/.tmp/.generated-actions/run-pypi-publish-in-docker-container
A Nautobot plugin which provides data models for NVIDIA products
mercari/actions-runner-controller/.github/actions/execute-assert-arc-e2e
Kubernetes controller for GitHub Actions self-hosted runners
tanker187/playwright/.github/actions/run-test
Playwright is a framework for Web Testing and Automation. It allows testing Chromium, Firefox and WebKit with a single API.
saleor/saleor-internal-actions/sbom-generator
Collection of GitHub Actions used internally at Saleor
anothrnick/github-tag-action
A Github Action to tag a repo on merge.
home-assistant/builder/actions/build-image
Home Assistant builder script
dargon789/hardhat/.github/actions/setup-env
Hardhat is a development environment to compile, deploy, test, and debug your Ethereum software.
rustsec/audit-check
๐ก๏ธ GitHub Action for security audits
bots-house/ghcr-delete-image-action
โป๏ธ Delete GitHub Container Registry image by tag
sonarsource/sonar-flex/.actions/get-build-number
flatt-security/setup-takumi-guard-npm
GitHub Action to configure npm/yarn/pnpm etc. with Takumi Guard registry
step-security/s3-actions-cache/__builder_checkout_dir__/.github/actions/privacy-check
Cache to S3 storage with official actions/cache@v2 fallback. Secure drop-in replacement for tespkg/actions-cache.
elastic/elastic-otel-dotnet/.github/workflows/bootstrap
Elastic OpenTelemetry .NET Distribution
celfons/agents-default-actions-template/.github/actions/language-detect
step-security/create-pull-request/__builder_checkout_dir__/.github/actions/privacy-check
A GitHub action to create a pull request for changes to your repository in the actions workspace. Secure drop-in replacement for peter-evans/create-pull-request.
step-security/dynamodb-actions/__builder_checkout_dir__/.github/actions/secure-download-artifact
Integrate Github Action with Amazon DynamoDB. Secure drop-in replacement for mooyoul/dynamodb-actions.
step-security/trivy-action
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities. Secure drop-in replacement for aquasecurity/trivy-action.
chainguard-dev/actions/setup-eksctl
A collection of reusable Github Actions workflows.
dallemon/images/.github/actions/verify-readme
Public Chainguard Images
step-security/runs-on-cache/save
Shockingly faster GitHub Action cache with S3 backend. Secure drop-in replacement for runs-on/cache.