ActionRank

Deploy Gatsby to AWS S3

Stale

jonelantha/gatsby-s3-action · MIT

Deploy a Gatsby Project to an AWS S3 bucket (optional Cloudfront support)

45 starsLast commit 9 months agoLatest v4.0.0
D
46
/ 100
Security 39Maintenance 50Popularity 27Reliability 80

Security signals

OpenSSF Scorecard3.1 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record

How to use it safely

Recommended: pin to commit SHA
uses: jonelantha/gatsby-s3-action@08b1e5dc1df5022aa5c416355788d0294a232f44 # v4.0.0

Mutable tags like v4.0.0 can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.

Full workflow example
steps:
  - uses: jonelantha/gatsby-s3-action@08b1e5dc1df5022aa5c416355788d0294a232f44 # v4.0.0

Score breakdown

Security (35%)39
Popularity (20%)27
Maintenance (30%)50
Reliability (15%)80