Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
chains-project/dirty-waters-action
Break the build if your supply chain is dirty
myrotvorets/composite-actions/node-run-script
Composite actions used by our workflows
domain-protect/terraform-aws-domain-protect/../../_actions/LocalStack/setup-localstack/9392b05ddb345894c2e86305fc426566e738c1db/startup
Terraform module for OWASP Domain Protect on AWS
salehhashemi1992/ai-code-guard
Automatically reviews code changes in pull requests using OpenAI models to generate thoughtful suggestions for improving code quality.
Yuri6037/Action-FakeTTY
FakeTTY GitHub Action
modeseven-lfreleng-actions/tag-push-verify-action
Verifies the action/workflow event trigger was a tag push event
SethCohen/github-releases-to-discord
Posts a GitHub Release changelog to a specified Discord channel
quotidian-ennui/actions-olio/repo-dispatch
It's a gallimaufry of actions
fossology/fossology-action
GitHub Action for FOSSology CI scanners.
step-security/nats-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
start nats server(s) for Github Actions. Secure drop-in replacement for onichandame/nats-action.
step-security/ghaction-setup-docker
GitHub Action to set up (download and install) Docker CE. Secure drop-in replacement for docker/setup-docker-action.
lfreleng-actions/json-key-value-lookup-action
Action to perform a lookup from a JSON string containing a simple array of key/value pairs.
reviewdog/action-terraform-validate
:dog: Run terraform validate with reviewdog
chronograph-pe/helmfile-action
helmfile-action
step-security/create-or-update-pull-request-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
A GitHub Action to create or update a pull request based on local changes. Secure drop-in replacement for gr2m/create-or-update-pull-request-action.
chainguard-dev/digestabot
A Github Action to automatically update digests for container images.
edera-dev/libscap-bindings/.github/actions/install-llvm
Rust bindings for Falco's `libscap` eBPF monitoring backend C library
actionutils/dynamic-uses
Dynamically resolve and use another GitHub action
grafana/prometheus-alertmanager/.github/promci/actions/setup_environment
Prometheus Alertmanager
mergifyio/gha-mergify-ci
GitHub Actions integration with Mergify CI Issues