Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

reviewdog/action-terraform-validate

reviewdog/action-terraform-validate

:dog: Run terraform validate with reviewdog

4/10
chronograph-pe/helmfile-action

chronograph-pe/helmfile-action

helmfile-action

3/10
step-security/create-or-update-pull-request-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/create-or-update-pull-request-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

A GitHub Action to create or update a pull request based on local changes. Secure drop-in replacement for gr2m/create-or-update-pull-request-action.

10/10
chainguard-dev/digestabot

chainguard-dev/digestabot

A Github Action to automatically update digests for container images.

7/10
edera-dev/libscap-bindings/.github/actions/install-llvm

edera-dev/libscap-bindings/.github/actions/install-llvm

Rust bindings for Falco's `libscap` eBPF monitoring backend C library

5/10
actionutils/dynamic-uses

actionutils/dynamic-uses

Dynamically resolve and use another GitHub action

3/10
grafana/prometheus-alertmanager/.github/promci/actions/setup_environment

grafana/prometheus-alertmanager/.github/promci/actions/setup_environment

Prometheus Alertmanager

4/10
mergifyio/gha-mergify-ci

mergifyio/gha-mergify-ci

GitHub Actions integration with Mergify CI Issues

4/10
actionsx/prettier

actionsx/prettier

🔨 Native, blazingly-fast Prettier CLI on Github Actions

4/10
coveord/renovate/.github/actions/calculate-prefetch-matrix

coveord/renovate/.github/actions/calculate-prefetch-matrix

Home of the Renovate CLI: Cross-platform Dependency Automation by Mend.io

4/10
pytorch/pytorch/.github/actions/ecr-login

pytorch/pytorch/.github/actions/ecr-login

Tensors and Dynamic neural networks in Python with strong GPU acceleration

6/10
androidx/check-pr-format-action

androidx/check-pr-format-action

GitHub Action that lints the pull request body to ensure it includes Tests: and Bug: stanzas

3/10
suo/flake8-github-action

suo/flake8-github-action

A GitHub Action to run flake8 and annotate lint failures

2/10
actions-rs/clippy

actions-rs/clippy

WIP

3/10
feiskyer/ChatGPT-Reviewer

feiskyer/ChatGPT-Reviewer

Automated pull requests reviewing and issues triaging with ChatGPT.

4/10
rapidsai/trigger-workflow-and-wait

rapidsai/trigger-workflow-and-wait

Trigger a workflow in another (or same) repository and wait for the job to finish.

5/10
Simek/yarn-lock-changes

Simek/yarn-lock-changes

Creates a comment inside Pull Request with the human-readable summary of changes to the Yarn lock file. Works with every Yarn version (classic and berry).

5/10
h0x0er/TheCombine/.github/actions/combine-deploy-update

h0x0er/TheCombine/.github/actions/combine-deploy-update

This is a tool for supporting the rapid word collection workshop and post workshop clean-up

2/10
anysphere/buf-lint-action

anysphere/buf-lint-action

2/10
step-security/ghcommit-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/ghcommit-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action to commit files to a git branch using the ghcommit utility. Secure drop-in replacement for planetscale/ghcommit-action.

10/10