Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
suzuki-shunsuke/tfaction
Framework for Monorepo to build high level Terraform Workflows by GitHub Actions
hoprnet/hopr-workflows/actions/nix-action
GitHub workflows helping HOPR automate tasks via actions
launchdarkly/openfeature-ruby-server/.github/actions/publish-docs
An OpenFeature provider for the LaunchDarkly Ruby server SDK.
yru-weighed/upload-artifact
step-security/pull-request-comment-branch/__builder_checkout_dir__/.github/actions/privacy-check
A GitHub Action to get the head ref and sha of a pull request comment. Secure drop-in replacement for xt0rted/pull-request-comment-branch.
octopusdeploy/login
GitHub action to login to your Octopus Server
olivernybroe/action-conflict-finder
A Github action for finding merge conflicts
prichey/retry
Retries a GitHub Action step on failure or timeout
jwalton/gh-docker-logs
GitHub Action to collect logs from all docker containers.
joerick/update-vx.y-tag-action
harden-runner-canary/kyverno/.github/actions/is-defined
Kubernetes Native Policy Management
heisenberg-2077/use-npm-token-action
Use an NPM token within an .npmrc file inside GitHub actions. Scoped packages are the primary use case.
ionbazan/composer-diff-action
Compare composer.lock files and generate human-readable list of package changes
maximhq/snyk-actions/setup
A set of GitHub actions for checking your projects for vulnerabilities.
mauriciomenon/ssa_consulta_rapida/.github/actions/opencode-github
Ferramenta para consulta e extraรงรฃo de dados de relatรณrios de SSAs.
step-security/super-linter
Combination of multiple linters to run as a GitHub Action or standalone. Secure drop-in replacement for super-linter/super-linter.
nvidia-nemo/nemo-platform/.github/actions/free-disk-space
Make the agents you ship faster, more accurate, and safer.
tjenkinson/gh-action-auto-merge-dependency-updates
A GitHub action that will automatically approve and merge a PR that only contains dependency updates, based on some rules. Also possible to disable the merge and use the `success` output to use in combination with other actions.
jtcombs95-commits/blockscout-rs/.github/actions/setup
smart-contract-verifier-http
devantler-tech/ksail/.github/actions/ksail-system-test
All-in-one Kubernetes SDK: create, manage, and operate clusters across distributions (Kind, K3d, Talos, VCluster) with built-in GitOps, secrets, AI assistant, and MCP server. Only requires Docker or a Cloud Provider.