Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

gradle-update/update-gradle-wrapper-action

gradle-update/update-gradle-wrapper-action

Keep Gradle Wrapper up-to-date with this action.

6/10
ytanikin/PRConventionalCommits

ytanikin/PRConventionalCommits

2/10
actions-ecosystem/action-add-labels

actions-ecosystem/action-add-labels

🏷️ GitHub Action to add labels

3/10
step-security/action-read-yaml/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/action-read-yaml/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Custom github action used to read yaml files, supporting multiple keys and variable replacements. Secure drop-in replacement for pietrobolcato/action-read-yaml.

10/10
docker-library/bashbrew

docker-library/bashbrew

Canonical parsing tool for the official images library files

2/10
chronograph-pe/stale

chronograph-pe/stale

Marks issues and pull requests that have not had recent interaction

2/10
NVIDIA/cccl/.github/actions/workflow-build

NVIDIA/cccl/.github/actions/workflow-build

CUDA Core Compute Libraries

8/10
xom9ikk/split

xom9ikk/split

Github Action for splitting strings into parts by separator with limit

0/10
kaisugi/action-regex-match

kaisugi/action-regex-match

GitHub Action to do regex matching

3/10
pytorch/TensorRT/test-infra/.github/actions/setup-binary-builds

pytorch/TensorRT/test-infra/.github/actions/setup-binary-builds

PyTorch/TorchScript/FX compiler for NVIDIA GPUs using TensorRT

3/10
reviewdog/action-detect-secrets

reviewdog/action-detect-secrets

GitHub Action: Run detect-secrets with reviewdog

6/10
goplus/setup-xgo

goplus/setup-xgo

Set up your GitHub Actions workflow with a specific version of XGo

3/10
crowdin/github-action

crowdin/github-action

A GitHub action to manage and synchronize localization resources with your Crowdin project

6/10
Kevinjil/jellyfin-plugin-repo-action

Kevinjil/jellyfin-plugin-repo-action

A GitHub action which generates a Jellyfin plugin repository manifest file as a GitHub action.

3/10
step-security/terraform-cloud-provider-publish

step-security/terraform-cloud-provider-publish

An action for publishing terraform providers to a private registry. Secure drop-in replacement for thechrisjohnson/terraform-cloud-provider-publish.

10/10
Maintained by StepSecurity
gaphor/gaphor

gaphor/gaphor

Gaphor is the simple modeling tool

6/10
christian-draeger/read-properties

christian-draeger/read-properties

Github action to read java properties files

5/10
lfreleng-actions/python-project-name-action

lfreleng-actions/python-project-name-action

Extracts Python project name and derives the package name

6/10
intel/cve-bin-tool-action

intel/cve-bin-tool-action

Known vulnerability scanning for your GitHub repository using CVE Binary Tool. This Action can scan binaries, component lists and SBOMs for known vulnerabilities and CVEs. It can generate SBOM component lists as well as reports in the Security Tab and in HTML/JSON/PDF format.

6/10
AlexanderWert/action-slack

AlexanderWert/action-slack

🚀 GitHub Action that sends a Slack notification.

2/10