Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

brenoepics/vmd-action

brenoepics/vmd-action

Easily integrate Vue Mess Detector into your CI pipeline to receive pull request alerts and display badges effortlessly.

2/10
modeseven-lfreleng-actions/1password-secrets-action

modeseven-lfreleng-actions/1password-secrets-action

Load secrets into GitHub CI/CD pipeline from 1Password vaults

7/10
hashicorp/vault-action

hashicorp/vault-action

A GitHub Action that simplifies using HashiCorp Vault™ secrets as build variables.

7/10
ariga/setup-atlas

ariga/setup-atlas

A GitHub Action to install ariga/atlas in your workflows.

4/10
optum/booster/.github/actions/test-integration-run-one

optum/booster/.github/actions/test-integration-run-one

Booster Cloud Framework

3/10
tj-actions/changed

tj-actions/changed

:octocat: Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories.

8/10
LedgerHQ/ledger-live/tools/actions/composites/setup-test-desktop

LedgerHQ/ledger-live/tools/actions/composites/setup-test-desktop

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
action-pack/set-variable

action-pack/set-variable

Action to set a repository variable.

4/10
signpath/github-action-submit-signing-request

signpath/github-action-submit-signing-request

3/10
connor-baer/action-sync-branch

connor-baer/action-sync-branch

GitHub Action to keep a branch in sync with the current branch

7/10
hashgraph/stablecoin-studio/.github/actions/create-env-file

hashgraph/stablecoin-studio/.github/actions/create-env-file

All-in-one stablecoin configuration, issuance, and management

4/10
lcarva/review-rot-action/web

lcarva/review-rot-action/web

GitHub actions for review-rot

3/10
step-security/setup-crate/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/setup-crate/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

📦 GitHub Action to install a Rust crate from a GitHub release. Secure drop-in replacement for extractions/setup-crate.

10/10
run-ai/gajira-find-issue-key

run-ai/gajira-find-issue-key

0/10
grafana/plugin-ci-workflows/actions/plugins/docs/test

grafana/plugin-ci-workflows/actions/plugins/docs/test

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

7/10
opea-project/validation/actions/trivy-scan

opea-project/validation/actions/trivy-scan

3/10
equinor/cc-components/.github/actions/get-fusion-token

equinor/cc-components/.github/actions/get-fusion-token

Components and apps for CC.

6/10
irunasroot/action-awx-template

irunasroot/action-awx-template

Action for launching an AWX/AAP Job or Workflow Template

5/10
mukunku/tag-exists-action

mukunku/tag-exists-action

A GitHub action that determines if a tag exists in a repo

5/10
grafana/grafana/actions/has-matching-release-tag

grafana/grafana/actions/has-matching-release-tag

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

6/10