ActionRank

Backport merged pull requests to selected branches

Actively maintained

korthout/backport-action · MIT

Fast and flexible GitHub action to cherry-pick merged pull requests to selected branches

118 starsLast commit 2 days agoLatest v3.next-preview
C
67
/ 100
Security 49Maintenance 100Popularity 46Reliability 70

Security signals

OpenSSF Scorecard4.8 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record

How to use it safely

Recommended: pin to commit SHA
uses: korthout/backport-action@4693ffc55cae5724c4f593d4d1fd8042d884f92f # v3.next-preview

Mutable tags like v3.next-preview can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.

Full workflow example
steps:
  - uses: korthout/backport-action@4693ffc55cae5724c4f593d4d1fd8042d884f92f # v3.next-preview

Score breakdown

Security (35%)49
Popularity (20%)46
Maintenance (30%)100
Reliability (15%)70

Add this badge to your README

ActionRank grade badge for Backport merged pull requests to selected branches
Markdown
[![ActionRank](https://actionrank.dev/api/badge/korthout-backport-action)](https://actionrank.dev/actions/korthout-backport-action)
HTML version
HTML
<a href="https://actionrank.dev/actions/korthout-backport-action"><img src="https://actionrank.dev/api/badge/korthout-backport-action" alt="ActionRank score"></a>

Free to use, no attribution required — the badge updates itself as the score changes. How badges work

Get alerts for Backport merged pull requests to selected branches

We'll email you only if Backport merged pull requests to selected branches becomes abandoned or a new advisory is published. Unsubscribe any time. How we handle your address