Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
nhedger/setup-sops
โ Setup SOPS in GitHub Actions
linuxfoundation/lfx-public-workflows/.github/actions/helm-chart-oci-publisher
hugoheml/update_release
This GitHub Action (written in JavaScript) is to change the Body Text and Name of an already created Release with using the GitHub Release API.
grafana/mimir-loki/actions/metrics-collector
Like Prometheus, but for logs.
nvidia/dsx-github-actions/.github/actions/commitlint
Github Action infrastructure for DSX
veeezo/docs-1/.github/actions/setup-elasticsearch
The open-source repo for docs.github.com
step-security/setup-bun/.github/actions/compare-bun-version
Set up your GitHub Actions workflow with a specific version of Bun. Secure drop-in replacement for oven-sh/setup-bun.
yonasbsd/wazuh/.github/actions/4_operational_prerelease_unit_tests_issue
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
elastic/oblt-actions/pre-commit
darenm/setup-vstest
DEPRECATED - Set up your GitHub Actions workflow to add VSTest.console.exe into the PATH
lost-pixel/lost-pixel
Open source alternative to Percy, Chromatic, Applitools.
step-security/dtolnay-rust-toolchain/__builder_checkout_dir__/.github/actions/privacy-check
Concise GitHub Action for installing a Rust toolchain. Secure drop-in replacement for dtolnay/rust-toolchain.
ferretdb/github-actions/linters
Shared GitHub Actions for FerretDB repos
politicalsphere/ci/.github/actions/ps-task/trufflehog
CI/CD pipelines and GitHub Actions for Political Sphere
unionai/flytectl-setup-action
Install and setup flytectl for use in other actions
little-core-labs/install-terraform
Install terraform to the current GitHub Actions job
openapi-generators/openapitools-generator-action
Generate a client library using the OpenAPITools Generator
pre-commit/action
a GitHub action to run `pre-commit`
tanker187/playwright/.github/actions/enable-microphone-access
Playwright is a framework for Web Testing and Automation. It allows testing Chromium, Firefox and WebKit with a single API.
viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/viasat-fetch-ghdotcom-token-action
Viasat-specific GitHub Action that uses GitHub OIDC + Vault to mint a short-lived (ephemeral) authenticated github.com token for use in GHES workflows (e.g., to avoid unauthenticated API rate limits).