Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

docker/scout-action

docker/scout-action

Docker Scout GitHub Action

5/10
warriors-life/.warriors-life-workflows/test-docker-image

warriors-life/.warriors-life-workflows/test-docker-image

Warriors Life's reusable GitHub Actions workflows

3/10
e1himself/goss-installation-action

e1himself/goss-installation-action

Github Action to install goss (and friends: dgoss, dcgoss, kgoss)

2/10
step-security/setup-just/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/setup-just/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

🤖 GitHub Action to install the just command runner. Secure drop-in replacement for extractions/setup-just.

10/10
step-security/git-restore-mtime-action

step-security/git-restore-mtime-action

A GitHub Workflow Action which restores timestamps of files in the current tree. Secure drop-in replacement for chetan/git-restore-mtime-action.

10/10
Maintained by StepSecurity
Kong/gh-storage/download

Kong/gh-storage/download

Use a GitHub hosted repository to store and retrieve files

3/10
bewuethr/mdl-action

bewuethr/mdl-action

A GitHub Action to run the Ruby Markdown linter mdl

5/10
AleksandrFurmenkovOfficial/ai-code-review

AleksandrFurmenkovOfficial/ai-code-review

AI Code Review is a lightweight, simple GitHub Action that supports various AI models to analyze and provide feedback on your code. This GitHub Action helps improve code quality by automatically reviewing pull requests, focusing on specified file extensions, and excluding specific paths.

4/10
Git-Hub-Chris/VisualStudioCode/actions/tag-alert

Git-Hub-Chris/VisualStudioCode/actions/tag-alert

IDE for Windows, Linux, and macOS.

4/10
pytorch/torchrec/test-infra/.github/actions/run-script-with-cache

pytorch/torchrec/test-infra/.github/actions/run-script-with-cache

Pytorch domain library for recommendation systems

3/10
celo-org/op-succinct/.github/actions/setup

celo-org/op-succinct/.github/actions/setup

Succinct's Production-Grade Proving Engine for the OP Stack

6/10
peter-evans/autopep8

peter-evans/autopep8

A GitHub action for autopep8, a tool that automatically formats Python code to conform to the PEP 8 style guide.

4/10
pytorch/test-infra/.github/actions/bc-lint

pytorch/test-infra/.github/actions/bc-lint

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
LedgerHQ/ledger-live/tools/actions/composites/setup-caches

LedgerHQ/ledger-live/tools/actions/composites/setup-caches

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
hashicorp/actions-persist-metadata

hashicorp/actions-persist-metadata

Persists metadata used by Common Release Tooling

6/10
step-security/set-github-variable/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/set-github-variable/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Use this Github Action to update a variable in your Github Action Workflows for your repository. Secure drop-in replacement for mmoyaferrer/set-github-variable.

10/10
brittanyshelton23/docs/.github/actions/get-changed-files

brittanyshelton23/docs/.github/actions/get-changed-files

The open-source repo for docs.github.com

3/10
SpicyPizza/create-envfile

SpicyPizza/create-envfile

Github Action to create a .env file with Github Secrets

3/10
ammaraskar/gcc-problem-matcher

ammaraskar/gcc-problem-matcher

Github Action to problem match gcc output

4/10
remarkablemark/setup-codeclimate

remarkablemark/setup-codeclimate

⚙️ Set up GitHub Actions workflow with Code Climate test reporter.

4/10