Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
servicenow/sncicd-apply-changes
aurornz/paths-filter
Conditionally run actions based on files modified by PR, feature branch or pushed commits
bus1/cabuild/action/msdevshell
Content-Addressable Build Environments
cloudzero/cloudzero-action-publish-costformation
This is a GitHub action to publish CostFormation definitions to the CloudZero platform.
wyrihaximus/github-action-wait-for-status
Github Action that waits for successful commit status
oxsecurity/megalinter/flavors/cupcake
๐ฆ MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.
launchdarkly/swift-launchdarkly-observability/.github/actions/test-swiftpm
LaunchDarkly Observability SDK for Swift
yonasbsd/buck2/.github/actions/contributing.md
Build system, successor to Buck
soos-io/soos-dast-github-action
SOOS DAST GitHub Action - Register for a Free Trial at https://app.soos.io/register
snnaplab/get-labels-action
optum/sourcehawk/.github/actions/build-windows-native-image
Sourcehawk is an extensible compliance as code tool which allows development teams to run compliance scans on their source code.
singularityhub/install-singularity
Action to install Singlarity optimized for simplicity.
step-security/test-reporter/__builder_checkout_dir__/.github/actions/action-info.client.tsx
Displays test results from popular testing frameworks directly in GitHub. Secure drop-in replacement for dorny/test-reporter.
turtlesec-no/get-ninja
step-security/filter-sarif
GitHub Action for filtering Code Scanning alerts by path and id. Secure drop-in replacement for advanced-security/filter-sarif.
wistia/parse-tool-versions
Github action created to parse .tool-versions into the environment
fortify/github-action/internal/run
Fortify GitHub Actions
launchdarkly/swift-eventsource/.github/actions/build-tvos
Server-sent events (SSE) client implementation in Swift for iOS, macOS, tvOS, and watchOS
ledgerhq/ledger-live/tools/actions/composites/cache/exists
Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.