Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/hide-comment-action

step-security/hide-comment-action

Action to hide (minimize) comments in pull request. Secure drop-in replacement for int128/hide-comment-action.

10/10
Maintained by StepSecurity
SwiftyLab/ci/actions/condition

SwiftyLab/ci/actions/condition

Support files and configurations for SwiftyLab's CI

3/10
tomasreyes/node/node/.github/actions/install-clang

tomasreyes/node/node/.github/actions/install-clang

Node.js JavaScript runtime ✨🐢🚀✨

5/10
LedgerHQ/ledger-live/tools/actions/composites/setup-git-user

LedgerHQ/ledger-live/tools/actions/composites/setup-git-user

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
rapidsai/sccache/.github/actions/artifact_failure

rapidsai/sccache/.github/actions/artifact_failure

Sccache is a ccache-like tool. It is used as a compiler wrapper and avoids compilation when possible. Sccache has the capability to utilize caching in remote storage environments, including various cloud storage options, or alternatively, in local storage.

5/10
tomhjp/gh-action-jira-comment

tomhjp/gh-action-jira-comment

Add a comment to a Jira issue using GitHub actions

3/10
zephyrproject-rtos/action-first-interaction

zephyrproject-rtos/action-first-interaction

An action for filtering pull requests and issues from first-time contributors

4/10
pozetroninc/github-action-get-latest-release

pozetroninc/github-action-get-latest-release

A Github action to get the latest release from another repository.

4/10
reviewdog/action-cpplint

reviewdog/action-cpplint

Run cpplint with reviewdog

6/10
bluwy/substitute-string-action

bluwy/substitute-string-action

🚀️ Easily substitute or replace strings in GitHub Actions using YAML

3/10
humbletim/setup-vulkan-sdk

humbletim/setup-vulkan-sdk

github action that provisions the Vulkan SDK and configures VULKAN_SDK environment variable

4/10
puppetlabs/kvrhdn-gha-buildevents

puppetlabs/kvrhdn-gha-buildevents

Trace GitHub Action workflows with Honeycomb

4/10
zkoppert/advanced-security-enforcer

zkoppert/advanced-security-enforcer

A GitHub action for organizations that enables advanced security code scanning on all new repos

7/10
tue-robotics/tue-env/ci/main

tue-robotics/tue-env/ci/main

Package manager that can be used to install (ROS) dependencies

6/10
christian-korneck/update-container-description-action

christian-korneck/update-container-description-action

github action to update a Docker Hub, Quay or Harbor repository description from a README file

4/10
egibs/melange/.github/actions/setup-bubblewrap

egibs/melange/.github/actions/setup-bubblewrap

build APKs from source code

5/10
Codex-/await-remote-run

Codex-/await-remote-run

✅ Await the completion of a foreign repository Workflow Run given the Run ID.

4/10
step-security/actions-hugo/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/actions-hugo/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Actions for Hugo ⚡️ Setup Hugo quickly and build your site fast. Hugo extended, Hugo Modules, Linux (Ubuntu), macOS, and Windows are supported. Secure drop-in replacement for peaceiris/actions-hugo.

10/10
nttld/setup-ndk

nttld/setup-ndk

Setup your GitHub Actions workflow with a specific version of the Android NDK

4/10
iarekylew00t/verified-bot-commit

iarekylew00t/verified-bot-commit

✅ GitHub Action for creating signed and verified bot commits

7/10