Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
canonical/k8s-snap/.github/actions/install-lxd
Canonical Kubernetes is an opinionated and CNCF conformant Kubernetes operated by Snaps and Charms, which come together to bring simplified operations and an enhanced security posture on any infrastructure.
useblacksmith/caching-for-turbo
A Github action to set up Turborepo Remote Caching to work with GitHub Actions' built-in cache instead of Vercel one
pytorch/test-infra/test-infra/.github/actions/teardown-linux
This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.
andrcuns/allure-publish-action
Allure report publish action
bit-tasks/commit-bitmap
Commit the modified Bitmap task for CI/CD
step-security/r-lib-actions/image
GitHub Actions for the R community. Secure drop-in replacement for r-lib/actions.
radcortez/project-metadata-action
rapidsai/devcontainers/.github/actions/install-devcontainers-cli
diillson/auto-pull-request
ministryofjustice/laa-fee-scheme-ui/.github/actions/deploy
Fees calculator UI for legal claims
grafana/grafana/.grafana-main/pkg/build/actions/bump-version
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
cloudposse/github-action-jq
Process a value with a jq script and output to a step output.
sendgrid/dx-automator/actions/datadog-release-metric
A tool for managing priorities across multiple GitHub repositories
sudo-bot/action-pull-request-lock
Close and lock a pull-request
coveo/ui-kit/.github/actions/build
Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.
1password/load-secrets-action/configure
Load secrets from 1Password into your GitHub Actions jobs
shopify/task-list-checker
GitHub Action for checking pull requests for incomplete task list items.
jordemort/action-pyright
A GitHub Action to run pyright
step-security/add-and-commit
:octocat: Automatically commit changes made in your workflow run directly to your repo. Secure drop-in replacement for EndBug/add-and-commit.