Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
rapidsai/dependency-file-generator/.github/actions/semantic-release
aerospike/aerospike-client-java/.github/actions/publish-build-info-to-jfrog
Aerospike Java Client Library
cybrking/thr8
Automatically generate PASTA threat models from your repo using Claude AI.
hiddenlayerai/hiddenlayer-model-scan-github-action
Official HiddenLayer Github Action for the Model Scanner
step-security/action-install-gh-release
GitHub Action to install the Github Release binaries. Secure drop-in replacement for jaxxstorm/action-install-gh-release.
ministryofjustice/laa-manage-your-civil-cases/.github/actions/deploy
A service to centrally manage civil legal aid cases for the Legal Aid Agency
actionutils/create-release-pr
WIP
mitchellh/vouch/action/check-pr
A community trust management system based on explicit vouches to participate.
karancode/yamllint-github-action
Github Action for linting yaml files using yamllint
step-security/setup-xcode
Set up your GitHub Actions workflow with a specific version of Xcode. Secure drop-in replacement for maxim-lobanov/setup-xcode.
pytorch/tensordict/test-infra/.github/actions/teardown-windows
TensorDict is a pytorch dedicated tensor container.
casadi/commercial_solvers
Set up commercial solvers in CI for testing purposes
asottile/workflows/.github/actions/fast-checkout
reusable github workflows / actions
sredevopsorg/kserve/.github/actions/kserve-dep-setup
Standardized Serverless ML Inference Platform on Kubernetes
pytorch/text/test-infra/.github/actions/setup-binary-upload
Models, data loaders and abstractions for language processing, powered by PyTorch
aerospike/aerospike-client-csharp/.github/actions/run-ee-server
Aerospike C# Client Library
ministryofjustice/hmpps-github-shared-actions/.github/actions/slack_release_results
Shared actions for Github workflows to use PUT NO WORKFLOWS IN HERE! (except security scanning ones) (bootstrapped 2026-03-30)
supercharge/redis-github-action
Use Redis in GitHub Actions
check-spelling/check-spelling
Spelling checker action to check spelling in repositories / pull requests / commits
natescherer/changelog-management-action
A GitHub action to parse and update changelogs in Keep a Changelog 1.0.0 format; built on the ChangelogManagement PowerShell module.