Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
tomhjp/gh-action-jira-create
GitHub action to create Jira tickets with customisable fields
phips28/gh-action-bump-version
GitHub Action for automated npm version bump.
huntridge-labs/argus/.github/actions/scanner-bandit
Argus brings βa hundred eyesβ to your project, combining leading open source security tools into a scalable, automated, continuous security pipeline.
deepcode-ai/codeql/ql/.github/actions/fetch-codeql
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
jonathancombs782/bitcoin/.github/actions/save-caches
Bitcoin Core integration/staging tree
approved-3rd-party-actions/commit-message-checker
GitHub Action that checks commit messages of pushes and pull request against a regex pattern
grafana/grafana/.github/actions/changelog
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
hadolint/hadolint-action
GitHub action for Hadolint, A Dockerfile linting tool
surrealdb/rocksdb/.github/actions/pre-steps
A library that provides an embeddable, persistent key-value store for fast storage.
aks-lts/test-infra
LTS specific configuration and tooling for testing
hashicorp/sentinel-github-actions
slsa-framework/slsa-github-generator/.github/actions/secure-upload-artifact
Language-agnostic SLSA provenance generation for Github Actions
rjdbcm/ozi-publish
OZI action - publish releases to PyPI; and mirror releases, signature bundles, and provenance in a tagged release
masci/datadog
Send Datadog metrics, events, service checks and logs from GitHub workflows
kong/public-shared-actions/pr-previews/validate
Shared actions available to both public and private repositories
pytorch/text/test-infra/.github/actions/chown-directory
Models, data loaders and abstractions for language processing, powered by PyTorch
aerospike/aerospike-client-java-reactive/.github/actions/publish-build-info-to-jfrog
Reactive programming interfaces for the Aerospike Java client
angular/dev-infra/github-actions/bazel/configure-remote
Angular Development Infrastructure
envoyproxy/toolshed/gh-actions/jq
pytorch/tensordict/test-infra/.github/actions/run-script-with-cache
TensorDict is a pytorch dedicated tensor container.