Assess the risk of third-party GitHub Actions
Examples: ,
Actions
Assess all the actions
planetscale/ghcommit-action
GitHub Action to commit files to a git branch using the ghcommit utility
wow-actions/potential-duplicates
🔎 Search for potential issue duplicates using Damerau–Levenshtein algorithm
envoyproxy/toolshed/gh-actions/dispatch
nicledomaS/cmake_build_action
The GitHub Action for building cmake projects
pypa/cibuildwheel
🎡 Build Python wheels for all the platforms with minimal configuration.
Securable-ai/hardener
microsoft/msvc-code-analysis-action
Microsoft Visual C++ Code Analysis GitHub Action
grafana/plugin-actions/is-compatible
step-security/dynamic-uses/../dynamic-uses
Dynamically resolve and use another GitHub action
ljharb/actions/bun/install
GitHub actions I use for CI.
dustico/dusti-lock
DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.
liri-infra/qmllint-action
:heavy_plus_sign: Validates QML and JavaScript files
Platane/snk/svg-only
🟩⬜ Generates a snake game from a github user contributions graph and output a screen capture as animated svg or gif
asdf-vm/actions/plugin-test
GitHub Actions for the asdf version manager
step-security/woke-action-reviewdog/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
woke GitHub Action using reviewdog. Secure drop-in replacement for get-woke/woke-action-reviewdog.
step-security/envsubst-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check
Github Action for envsubst. Secure drop-in replacement for danielr1996/envsubst-action.
UpsideDownST/cyber-bootstrap
mig4/setup-bats
GitHub Action to setup BATS testing framework
step-security/github-api-commit-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact
Commits changes to the repository through the Github api instead of traditional git commands. Secure drop-in replacement for grafana/github-api-commit-action.
elastic/terranova/.github/workflows/env-install
Terranova is a thin wrapper for Terraform that provides extra tools and logic to handle Terraform configurations at scale.