Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

codacy/codacy-coverage-reporter-action

codacy/codacy-coverage-reporter-action

GitHub Action for the codacy-coverage-reporter

6/10
beshkenadze/ga-cache-janitor

beshkenadze/ga-cache-janitor

Purge GitHub Actions cache

2/10
ammarlakis/action-ajv

ammarlakis/action-ajv

GitHub action for running Ajv JSON schema validator.

1/10
pytorch/ignite/test-infra/.github/actions/setup-miniconda

pytorch/ignite/test-infra/.github/actions/setup-miniconda

High-level library to help with training and evaluating neural networks in PyTorch flexibly and transparently.

3/10
modeseven-lfreleng-actions/make-action

modeseven-lfreleng-actions/make-action

Runs make against the contents of a Git repository and/or a local directory

3/10
pytorch/data/test-infra/.github/actions/run-script-with-cache

pytorch/data/test-infra/.github/actions/run-script-with-cache

A PyTorch repo for data loading and utilities to be shared by the PyTorch domain libraries.

4/10
codacy/codacy-analysis-cli-action

codacy/codacy-analysis-cli-action

GitHub Action for the codacy-analysis-cli

6/10
pytorch/xla/.actions/.github/workflows/setup

pytorch/xla/.actions/.github/workflows/setup

Enabling PyTorch on XLA Devices (e.g. Google TPU)

4/10
google/oss-fuzz/infra/cifuzz/actions/run_fuzzers

google/oss-fuzz/infra/cifuzz/actions/run_fuzzers

OSS-Fuzz - continuous fuzzing for open source software.

8/10
equinor/action-checkstyle

equinor/action-checkstyle

Fork of the original action to run Checkstyle on your Java code.

7/10
zeebe-io/backport-action

zeebe-io/backport-action

Fast and flexible GitHub action to cherry-pick merged pull requests to selected branches

6/10
xarray-contrib/issue-from-pytest-log

xarray-contrib/issue-from-pytest-log

create issues from pytest-reportlog files

4/10
bazelbuild/continuous-integration/actions/bcr-pr-reviewer

bazelbuild/continuous-integration/actions/bcr-pr-reviewer

Bazel's Continuous Integration Setup

6/10
gradle/actions/dependency-submission

gradle/actions/dependency-submission

A collection of GitHub Actions to accelerate your Gradle Builds on GitHub

8/10
actions-security-demo/script-injection/.github/workflows/actions/changelog

actions-security-demo/script-injection/.github/workflows/actions/changelog

2/10
sersoft-gmbh/setup-gh-cli-action

sersoft-gmbh/setup-gh-cli-action

A GitHub action that installs or updates the gh CLI

6/10
pytorch/multipy/test-infra/.github/actions/pull-docker-image

pytorch/multipy/test-infra/.github/actions/pull-docker-image

torch::deploy (multipy for non-torch uses) is a system that lets you get around the GIL problem by running multiple Python interpreters in a single C++ process.

3/10
Azure/k8s-deploy

Azure/k8s-deploy

GitHub Action for deploying to Kubernetes clusters

9/10
imjasonh/gke-auth

imjasonh/gke-auth

K8s cred helper and setup without gcloud

3/10
chainguard-dev/actions/donotsubmit

chainguard-dev/actions/donotsubmit

A collection of reusable Github Actions workflows.

6/10