Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
paddlehq/go-pgdump/.github/actions/setup-databases
Go library to create PostgreSQL dumps without external dependencies.
yonasbsd/dokku/.github/actions/build-image
A docker-powered PaaS that helps you build and manage the lifecycle of applications
step-security/setup-compose-action
GitHub Action to set up Docker Compose. Secure drop-in replacement for docker/setup-compose-action.
surrealdb/rocksdb/.github/actions/windows-build-steps
A library that provides an embeddable, persistent key-value store for fast storage.
sonarsource/sonar-scala/.github/actions/orchestrator-cache
Scala analyzer
nodoubtz-record-label/terraform/.github/actions/equivalence-test
Terraform enables you to safely and predictably create, change, and improve infrastructure. It is a source-available tool that codifies APIs into declarative configuration files that can be shared amongst team members, treated as code, edited, reviewed, and versioned.
stacklet/cube/actions/author-detector
๐ Cube โ Universal semantic layer platform for AI, BI, spreadsheets, and embedded analytics
sailpoint-oss/api-linter/packages/github-spectral-comment
Spectral Sailpoint Rulesets and Functions
politicalsphere/ci/.github/actions/ps-pr-comment
CI/CD pipelines and GitHub Actions for Political Sphere
sandersaarond/shared-workflows/actions/bundle-plugin
A public-facing, centralized place to store reusable workflows used by Grafana Labs.
yonasbsd/grafana/ephemeral
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
sonarsource/sonarqube/.actions/get-build-number
Continuous Inspection
kong/toolchain
๐ ๏ธ GitHub Action for `rustup` commands
reality2byte/docs/.github/actions/clone-translations
The open-source repo for docs.github.com
dotnet/docs-tools/cleanrepo/cleanrepo
This repo contains GitHub Actions and other tools that are designed to be invoked on DocFx repositories.
nvidia-nemo/export-deploy/fw-ci-templates/.github/actions/publish-docs
A library for exporting models including NeMo and Hugging Face to optimized inference backends, and deploying them for efficient querying
broadsage/containers/.github/actions/build-metadata
Primary source of truth for the Broadsage Container Images
schwma/parse-changelog-action
GitHub action that parses a specific release from a CHANGELOG
tj-actions/bandit
:octocat: Github action to run PyCQA's bandit security linter.