Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/setup-vals/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/setup-vals/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Github Action for installing vals (https://github.com/helmfile/vals). Secure drop-in replacement for jkroepke/setup-vals.

10/10
dawidd6/action-ansible-playbook

dawidd6/action-ansible-playbook

:gear: A GitHub Action for running Ansible playbooks

5/10
approved-3rd-party-actions/upload-mobile-app-github-action

approved-3rd-party-actions/upload-mobile-app-github-action

The Github action to upload an mobile app file to Kobiton Apps Repo

3/10
aquasecurity/tfsec-pr-commenter-action

aquasecurity/tfsec-pr-commenter-action

Add comments to pull requests where tfsec checks have failed

4/10
armbian/build

armbian/build

Armbian Linux build framework generates custom Debian or Ubuntu image for x86, aarch64, riscv64 & armhf

8/10
step-security/hide-comment-action

step-security/hide-comment-action

Action to hide (minimize) comments in pull request. Secure drop-in replacement for int128/hide-comment-action.

10/10
Maintained by StepSecurity
SwiftyLab/ci/actions/condition

SwiftyLab/ci/actions/condition

Support files and configurations for SwiftyLab's CI

3/10
tomasreyes/node/node/.github/actions/install-clang

tomasreyes/node/node/.github/actions/install-clang

Node.js JavaScript runtime ✨🐢🚀✨

5/10
LedgerHQ/ledger-live/tools/actions/composites/setup-git-user

LedgerHQ/ledger-live/tools/actions/composites/setup-git-user

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
rapidsai/sccache/.github/actions/artifact_failure

rapidsai/sccache/.github/actions/artifact_failure

Sccache is a ccache-like tool. It is used as a compiler wrapper and avoids compilation when possible. Sccache has the capability to utilize caching in remote storage environments, including various cloud storage options, or alternatively, in local storage.

5/10
tomhjp/gh-action-jira-comment

tomhjp/gh-action-jira-comment

Add a comment to a Jira issue using GitHub actions

3/10
zephyrproject-rtos/action-first-interaction

zephyrproject-rtos/action-first-interaction

An action for filtering pull requests and issues from first-time contributors

4/10
pozetroninc/github-action-get-latest-release

pozetroninc/github-action-get-latest-release

A Github action to get the latest release from another repository.

4/10
reviewdog/action-cpplint

reviewdog/action-cpplint

Run cpplint with reviewdog

6/10
bluwy/substitute-string-action

bluwy/substitute-string-action

🚀️ Easily substitute or replace strings in GitHub Actions using YAML

3/10
humbletim/setup-vulkan-sdk

humbletim/setup-vulkan-sdk

github action that provisions the Vulkan SDK and configures VULKAN_SDK environment variable

4/10
puppetlabs/kvrhdn-gha-buildevents

puppetlabs/kvrhdn-gha-buildevents

Trace GitHub Action workflows with Honeycomb

4/10
zkoppert/advanced-security-enforcer

zkoppert/advanced-security-enforcer

A GitHub action for organizations that enables advanced security code scanning on all new repos

7/10
tue-robotics/tue-env/ci/main

tue-robotics/tue-env/ci/main

Package manager that can be used to install (ROS) dependencies

6/10
christian-korneck/update-container-description-action

christian-korneck/update-container-description-action

github action to update a Docker Hub, Quay or Harbor repository description from a README file

4/10