StepSecurity Bot
                                            StepSecurity Bot
                                        
                                    ### Analysis ```yml Action Name: vmactions/freebsd-vm Action Type: Node GITHUB_TOKEN Matches: TOKEN Top language: JavaScript Stars: 121 Private: false Forks: 15 ``` ### action-security.yml
### Analysis ```yml Action Name: EmbarkStudios/cargo-deny-action Action Type: Docker GITHUB_TOKEN Matches: token Stars: 46 Private: false Forks: 13 ```
### Analysis ```yml Action Name: hkusu/review-assign-action Action Type: Node GITHUB_TOKEN Matches: github-token,token Top language: JavaScript Stars: 14 Private: false Forks: 1 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
### Analysis ```yml Action Name: michalvankodev/copy-issue-labels Action Type: Node GITHUB_TOKEN Matches: repo-token,GITHUB_TOKEN Top language: TypeScript Stars: 2 Private: false Forks: 1 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
### Analysis ```yml Action Name: cardinalby/git-get-release-action Action Type: Node GITHUB_TOKEN Matches: GITHUB_TOKEN,token Top language: TypeScript Stars: 14 Private: false Forks: 3 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: 'Get Latest Release' # sdepold/github-action-get-latest-release # GITHUB_TOKEN not used ```
### Analysis ```yml Action Name: chrnorm/deployment-action Action Type: Node GITHUB_TOKEN Matches: token,GITHUB_TOKEN,TOKEN Top language: JavaScript Stars: 103 Private: false Forks: 56 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...
This action's `action.yml` & `README.md` doesn't contains any reference to GITHUB_TOKEN ### action-security.yml ```yaml name: Pysa Action # facebook/pysa-action # GITHUB_TOKEN not used ```
### Analysis ```yml Action Name: FabianKramm/release-asset-action Action Type: Node GITHUB_TOKEN Matches: github-token,GITHUB_TOKEN,token Top language: JavaScript Stars: 0 Private: false Forks: 1 ``` ### action-security.yml
### Analysis ```yml Action Name: strumwolf/delete-deployment-environment Action Type: Node GITHUB_TOKEN Matches: GITHUB_TOKEN,token Top language: TypeScript Stars: 19 Private: false Forks: 8 ``` ### Endpoints Found |Endpoint | Permission| |---------| ----------|...