Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
contosoenterprise/variable-substitution
Enable GitHub developers to parameterize the values in their config files from a GitHub Action workflow
nasa/cfs/actions/cppcheck
The Core Flight System (cFS)
scribe-security/action-bom
Github action to Collect, Create and Store SBOM evidence
smartcontractkit/.github/actions/get-pr-labels
reusable GHA workflows and actions
step-security/openapitools-generator-action
Generate a client library using the OpenAPITools Generator. Secure drop-in replacement for openapi-generators/openapitools-generator-action.
roang-zero1/github-create-release-action
Create a GitHub release from a Tag
jfheinrich-eu/psono-secret-whisperer
A GitHub Action for securely retrieving secrets from PSONO server
step-security/upload-release-action
Upload files to a GitHub release. Secure drop-in replacement for svenstaro/upload-release-action.
step-security/backstage-entity-validator/__builder_checkout_dir__/.github/actions/privacy-check
Validate properties and well known annotations in your Backstage catalog-info.yaml files. Secure drop-in replacement for roadiehq/backstage-entity-validator.
open-edge-platform/orch-ci/image
Central hub for shared continuous integration (CI) workflows and actions for the Open-Edge-Platform project
cycjimmy/semantic-release-action
GitHub Action for Semantic Release
openzeppelin/openzeppelin-contracts/.github/actions/setup
OpenZeppelin Contracts is a library for secure smart contract development.
gittools/actions
GitHub Action that installs and uses the GitVersion and GitReleaseManager tools
viperproject/check-license-header
GitHub action to check whether all files have a specified copyright license header
w3c/spec-prod
GitHub Action to build ReSpec/Bikeshed specs, validate output and publish to GitHub pages or W3C
avides/actions-project-version-check
GitHub Action that checks if the project version has been updated
tyriis/docker-image-tag-exists
GitHub Action to check if a docker container image exists in a registry.
saschanowak/clovercodecoveragesummary
A GitHub Action that reads Clover format code coverage files from your test suite and outputs a markdown summary
nvidia/numba-cuda-mlir/.github/actions/restore_llvm_artifacts
repo for Numba-CUDA-MLIR