Jinja2 Action
AbandonedUse the Jinja2 template engine as a GitHub action
★ 47 starsLast commit 1 year agoLatest v1.3.0
F
34
/ 100
Security signals
OpenSSF Scorecard2.8 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record
How to use it safely
Recommended: pin to commit SHA
uses: cuchi/jinja2-action@8bd801365a8d36a0b20f45ee969161685de7785a # v1.3.0Mutable tags like v1.3.0 can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.
Full workflow example
steps: - uses: cuchi/jinja2-action@8bd801365a8d36a0b20f45ee969161685de7785a # v1.3.0
Score breakdown
Security (35%)37
Popularity (20%)33
Maintenance (30%)14
Reliability (15%)70