Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

actions-rs/install

actions-rs/install

⏩ GitHub Action for a faster binary crates installation

3/10
erlef/setup-beam

erlef/setup-beam

Set up your BEAM-based GitHub Actions workflow (Erlang, Elixir, Gleam, ...)

8/10
google-github-actions/get-secretmanager-secrets

google-github-actions/get-secretmanager-secrets

A GitHub Action for accessing secrets from Google Secret Manager and making them available as outputs.

7/10
re-actors/checkout-python-sdist

re-actors/checkout-python-sdist

A GitHub Action to unpack a source distribution package (tarball / `.tar.gz`) into the current workspace

3/10
seanmiddleditch/gha-setup-ninja

seanmiddleditch/gha-setup-ninja

GitHub Action to install the ninja build tool to PATH

8/10
slsa-framework/slsa-github-generator/.github/actions/secure-builder-checkout

slsa-framework/slsa-github-generator/.github/actions/secure-builder-checkout

Language-agnostic SLSA provenance generation for Github Actions

5/10
aquaproj/aqua-installer

aquaproj/aqua-installer

Install aqua securely and quickly

6/10
crate-ci/typos

crate-ci/typos

Source code spell checker

6/10
quotidian-ennui/actions-olio/docker-image-builder

quotidian-ennui/actions-olio/docker-image-builder

It's a gallimaufry of actions

6/10
jauderho/git-repo-sync

jauderho/git-repo-sync

Git Repo Sync Remix enables you to synchronize code to other code management platforms, such as GitLab, Gitee, etc.

6/10
step-security/dynamodb-actions

step-security/dynamodb-actions

Integrate Github Action with Amazon DynamoDB

10/10
Maintained by StepSecurity
super-linter/super-linter/slim

super-linter/super-linter/slim

Combination of multiple linters to run as a GitHub Action or standalone

9/10
golangci/golangci-lint-action

golangci/golangci-lint-action

Official GitHub Action for golangci-lint from its authors

9/10
gagoar/invoke-aws-lambda

gagoar/invoke-aws-lambda

GitHub action to invoke AWS lambda

3/10
nais/deploy/actions/deploy

nais/deploy/actions/deploy

Nais deploy: multi-cluster Kubernetes deployments

6/10
wei/git-sync

wei/git-sync

🔃 A GitHub Action for syncing between two independent repositories using force push

3/10
Nullify-Platform/dast-action

Nullify-Platform/dast-action

GitHub Action for Nullify DAST

5/10
google-github-actions/setup-gcloud

google-github-actions/setup-gcloud

A GitHub Action for installing and configuring the gcloud CLI.

8/10
nackerman-nydig/hadolint-action

nackerman-nydig/hadolint-action

GitHub action for Hadolint, A Dockerfile linting tool

3/10
pytorch/test-infra/test-infra/.github/actions/setup-ssh

pytorch/test-infra/test-infra/.github/actions/setup-ssh

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10