Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
launchdarkly/lua-server-sdk/.github/actions/publish-docs
LaunchDarkly Server-Side SDK for Lua
coveord/spinnaker/.github/actions/spinnaker-release
Spinnaker is an open source, multi-cloud continuous delivery platform for releasing software changes with high velocity and confidence.
iancha1992/continuous-integration/actions/cherry_picker
Bazel's Continuous Integration Setup
metamask/security-code-scanner
A GitHub action aggregating SAST tools to scan code for vulnerabilities
nvidia/openshell/.github/actions/setup-buildx
OpenShell is the safe, private runtime for autonomous AI agents.
gitleaks/gitleaks-action
Protect your secrets using Gitleaks-Action
zimperium/zscanmarketplace
yonasbsd/flox/.github/actions/common-setup
Developer environments you can take with you
tecolicom/actions-use-apt-tools
Github action for apt packages
yonasbsd/surrealdb/.github/actions/publish-binaries
A scalable, distributed, collaborative, document-graph database, for the realtime web
step-security/changed-files
Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories. Secure drop-in replacement for tj-actions/changed-files.
joshuathemiller/conditional-build-matrix
A GitHub Action that enables easier conditional matrix builds!
slsa-framework/slsa-github-generator/__builder_checkout_dir__/.github/actions/secure-upload-artifact
Language-agnostic SLSA provenance generation for Github Actions
politicalsphere/ci/.github/actions/consumer-contract
CI/CD pipelines and GitHub Actions for Political Sphere
isaac-sim/isaaclab-arena/.github/actions/setup-isaac-sim-kit-cache
Isaac Lab - Arena is a robotics simulation framework that enhances NVIDIA Isaac Lab by providing a composable, scalable system for creating diverse simulation environments and evaluating robot learning policies. The framework enables developers to rapidly prototype and test robotic tasks with various robot embodiments, objects, and environments.
grafana/mimir-loki/lib/actions/push-images
Like Prometheus, but for logs.
nvidia/aicr/.github/actions/aicr-build
Tooling for optimized, validated, and reproducible GPU-accelerated AI runtime in Kubernetes
warchant/setup-sonar-scanner
Github Action which downloads and runs sonar-scanner cli with custom parameters to start Sonarqube scan.
dudinea/argo-cd/__builder_checkout_dir__/.github/actions/privacy-check
Declarative Continuous Deployment for Kubernetes
step-security/deployment-action/__builder_checkout_dir__/.github/actions/privacy-check
GitHub action to create a Deployment. Secure drop-in replacement for chrnorm/deployment-action.