Second, pull requests from first-time contributors will require manual approval from a repository collaborator with write access before any Actions workflows run. When a first-time contributor opens a pull request, they’ll see a message that a maintainer must approve their Actions workflow before it will run.
GitHub Actions update: Helping maintainers combat bad actors | The GitHub Blog
It would be great if a first-time contributor who has reputation can run actions workflow automatically without any manual approval.
The reputations can be calculated from repos/stars/merged-prs/issues from their github account.