ActionRank

Lighthouse Check

Actively maintained

foo-software/lighthouse-check-action · MIT

GitHub Action for running @GoogleChromeLabs Lighthouse audits with all the bells and whistles 🔔 Multiple audits, Slack notifications, and more!

511 starsLast commit 1 months agoLatest v12.0.1
D
46
/ 100
Security 30Maintenance 54Popularity 43Reliability 70

Security signals

OpenSSF Scorecard1.7 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record

How to use it safely

Recommended: pin to commit SHA
uses: foo-software/lighthouse-check-action@a80267da2e0244b8a2e457a8575fc47590615852 # v12.0.1

Mutable tags like v12.0.1 can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.

Full workflow example
steps:
  - uses: foo-software/lighthouse-check-action@a80267da2e0244b8a2e457a8575fc47590615852 # v12.0.1

Score breakdown

Security (35%)30
Popularity (20%)43
Maintenance (30%)54
Reliability (15%)70