StepSecurity Bot
StepSecurity Bot
### Analysis ```yml Action Name: thollander/actions-comment-pull-request Action Type: Node GITHUB_TOKEN Matches: GITHUB_TOKEN,Token,token Top language: JavaScript Stars: 66 Private: false Forks: 28 ``` ### action-security.yml
### Analysis ```yml Action Name: wearerequired/lint-action Action Type: Node GITHUB_TOKEN Matches: token,github_token,GITHUB_TOKEN Top language: JavaScript Stars: 390 Private: false Forks: 80 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
### Analysis ```yml Action Name: vmactions/openbsd-vm Action Type: Node GITHUB_TOKEN Matches: TOKEN Top language: JavaScript Stars: 5 Private: false Forks: 0 ``` ### action-security.yml
### Analysis ```yml Action Name: Sibz/github-status-action Action Type: Node GITHUB_TOKEN Matches: Token,GITHUB_TOKEN,token Top language: TypeScript Stars: 40 Private: false Forks: 19 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
### Analysis ```yml Action Name: bigbinary/pr-auto-update Action Type: Node GITHUB_TOKEN Matches: github_token,Token Top language: TypeScript Stars: 0 Private: false Forks: 0 ``` ### action-security.yml
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: cibuildwheel # pypa/cibuildwheel # GITHUB_TOKEN not used ```
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: rustup toolchain install # dtolnay/rust-toolchain # GITHUB_TOKEN not used ```
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: "Black" # psf/black # GITHUB_TOKEN not used ```
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: 'Setup Julia environment' # julia-actions/setup-julia # GITHUB_TOKEN not used ```
### Analysis ```yml Action Name: deborah-digges/new-pull-request-comment-action Action Type: Node GITHUB_TOKEN Matches: token,Token,TOKEN Top language: JavaScript Stars: 4 Private: false Forks: 2 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...