Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

breathingdust/github-team-slackbot

breathingdust/github-team-slackbot

4/10
CycloneDX/gh-gomod-generate-sbom

CycloneDX/gh-gomod-generate-sbom

GitHub action to generate a CycloneDX SBOM for Go modules

5/10
jfrog/frogbot

jfrog/frogbot

🐸 Scans your Git repository with JFrog Xray for security vulnerabilities. 🤖

7/10
mcbeet/check-commands

mcbeet/check-commands

Github action to validate minecraft data packs and function files.

3/10
reviewdog/action-misspell

reviewdog/action-misspell

Run misspell with reviewdog

5/10
cue-lang/setup-cue

cue-lang/setup-cue

2/10
mridang/action-test-reporter

mridang/action-test-reporter

A flexible GitHub Action that parses code coverage and test result files to generate beautiful, insightful summaries in your workflow.

3/10
thechetantalwar/teams-notify

thechetantalwar/teams-notify

3/10
grafana/shared-workflows/_shared-workflows-publish-techdocs/actions/aws-auth

grafana/shared-workflows/_shared-workflows-publish-techdocs/actions/aws-auth

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

7/10
step-security/publish-unit-test-result-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/publish-unit-test-result-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action to publish unit test results on GitHub. Secure drop-in replacement for EnricoMi/publish-unit-test-result-action.

10/10
coursier/setup-action

coursier/setup-action

▶️ GitHub Action using Coursier to install JVM and Scala tools

6/10
jauderho/dnscontrol-action

jauderho/dnscontrol-action

Deploy your DNS configuration using GitHub Actions with DNSControl.

6/10
equinor/ert/.github/actions/install_dependencies_qt

equinor/ert/.github/actions/install_dependencies_qt

ERT - Ensemble based Reservoir Tool - is designed for running ensembles of dynamical models such as reservoir models, in order to do sensitivity analysis and data assimilation. ERT supports data assimilation using the Ensemble Smoother (ES), Ensemble Smoother with Multiple Data Assimilation (ES-MDA) and Iterative Ensemble Smoother (IES).

8/10
step-security/close-milestone/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/close-milestone/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A Github action to remove a milestone by the milestone's name. Secure drop-in replacement for Akkjon/close-milestone.

10/10
actions-rs/install

actions-rs/install

⏩ GitHub Action for a faster binary crates installation

3/10
NVIDIA/spark-rapids-common/pr-description-check

NVIDIA/spark-rapids-common/pr-description-check

Reusable GitHub Actions workflows and common scripts for Spark RAPIDS

5/10
erlef/setup-beam

erlef/setup-beam

Set up your BEAM-based GitHub Actions workflow (Erlang, Elixir, Gleam, ...)

9/10
google-github-actions/get-secretmanager-secrets

google-github-actions/get-secretmanager-secrets

A GitHub Action for accessing secrets from Google Secret Manager and making them available as outputs.

6/10
re-actors/checkout-python-sdist

re-actors/checkout-python-sdist

A GitHub Action to unpack a source distribution package (tarball / `.tar.gz`) into the current workspace

3/10
elastic/oblt-actions/oblt-cli/setup

elastic/oblt-actions/oblt-cli/setup

7/10