Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

aliyun/acr-login

aliyun/acr-login

4/10
pytorch/TensorRT/test-infra/.github/actions/run-script-with-cache

pytorch/TensorRT/test-infra/.github/actions/run-script-with-cache

PyTorch/TorchScript/FX compiler for NVIDIA GPUs using TensorRT

3/10
elgohr/Publish-Docker-Github-Action

elgohr/Publish-Docker-Github-Action

A Github Action used to build and publish Docker images

9/10
envoyproxy/toolshed/gh-actions/github/env/save

envoyproxy/toolshed/gh-actions/github/env/save

6/10
Homebrew/actions/setup-homebrew

Homebrew/actions/setup-homebrew

🚀 Homebrew's GitHub Actions

9/10
devops-infra/action-commit-push

devops-infra/action-commit-push

GitHub Action that will create a new commit and push it to the repository

8/10
JasonEtco/build-and-tag-action

JasonEtco/build-and-tag-action

📦🔖 A GitHub Action for publishing JavaScript Actions

2/10
grafana/Kost/.github/actions/setup-goversion

grafana/Kost/.github/actions/setup-goversion

K8s Cost Calculator that provides estimated reports for workloads running in Kubernetes.

6/10
sett-and-hive/sarif-to-comment-action

sett-and-hive/sarif-to-comment-action

A GitHub action for @security-alert/sarif-to-comment

5/10
grafana/shared-workflows/actions/setup-jrsonnet

grafana/shared-workflows/actions/setup-jrsonnet

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
jmertic/lfx-tac-actions

jmertic/lfx-tac-actions

GH action for syncing data into a TAC repo

7/10
DoozyX/clang-format-lint-action

DoozyX/clang-format-lint-action

This action checks if the source code matches the .clang-format file.

5/10
emmyoop/changie_bot

emmyoop/changie_bot

2/10
Git-Hub-Chris/FreeCAD/.github/workflows/actions/linux/configure

Git-Hub-Chris/FreeCAD/.github/workflows/actions/linux/configure

Open source 3D modeler.

7/10
hashicorp/action-setup-enos

hashicorp/action-setup-enos

A Github Action to install, configure, and run Enos scenarios

6/10
grafana/grafana/.github/actions/setup-node

grafana/grafana/.github/actions/setup-node

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

6/10
chains-project/maven-lockfile

chains-project/maven-lockfile

Lockfiles for Maven. Pin your dependencies. Build with integrity.

5/10
git-for-windows/get-azure-pipelines-artifact

git-for-windows/get-azure-pipelines-artifact

A GitHub Action that downloads and caches the specified artifact from a given Azure Pipeline

5/10
supabase/setup-cli

supabase/setup-cli

A GitHub action for interacting with your Supabase projects using the CLI.

7/10
step-security/test-summary-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/test-summary-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Show a helpful summary of test results in GitHub Actions CI/CD workflow runs. Secure drop-in replacement for test-summary/action.

10/10