StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

harden-runner-canary/dns-test/.github/actions/dns-config

harden-runner-canary/dns-test/.github/actions/dns-config

2/10
actions/first-interaction

actions/first-interaction

An action for filtering pull requests and issues from first-time contributors

7/10
grafana/grafana/.grafana-main/.github/workflows/actions/changelog

grafana/grafana/.grafana-main/.github/workflows/actions/changelog

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

5/10
Maintained action available
yonasBSD/AFFiNE/.github/actions/setup-sentry

yonasBSD/AFFiNE/.github/actions/setup-sentry

There can be more than Notion and Miro. AFFiNE is a next-gen knowledge base that brings planning, sorting and creating all together. Privacy first, open-source, customizable and ready to use.

4/10
Maintained action available
plettich/action-codespell

plettich/action-codespell

Run codespell with reviewdog

3/10
NVIDIA/JAX-Toolbox/.github/actions/with-post-step

NVIDIA/JAX-Toolbox/.github/actions/with-post-step

JAX-Toolbox

6/10
actions-rs/cargo

actions-rs/cargo

📦 GitHub Action for Rust `cargo` command

3/10
crs-k/stale-branches

crs-k/stale-branches

Finds and deletes stale branches

4/10
Maintained action available
mario-sangar/upload-s3-action

mario-sangar/upload-s3-action

github action for upload to S3 ☁️

1/10
step-security/linkinator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/linkinator-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

A GitHub Action that checks your README and other markdown for 404s. Secure drop-in replacement for JustinBeckwith/linkinator-action.

10/10
asymmetric-research/clusterfuzz-fuzzbot-builder/assets/brand/step-security-brand-name.svg

asymmetric-research/clusterfuzz-fuzzbot-builder/assets/brand/step-security-brand-name.svg

Build environment matching a FuzzBot running Ubuntu 22.04

2/10
reviewdog/action-actionlint

reviewdog/action-actionlint

run actionlint with reviewdog

7/10
sendgrid/dx-automator/actions/release

sendgrid/dx-automator/actions/release

A tool for managing priorities across multiple GitHub repositories

4/10
Dargon789/hardhat/.github/actions/setup-env

Dargon789/hardhat/.github/actions/setup-env

Hardhat is a development environment to compile, deploy, test, and debug your Ethereum software.

4/10
Maintained action available
Kong/public-shared-actions/security-actions/semgrep

Kong/public-shared-actions/security-actions/semgrep

Shared actions available to both public and private repositories

6/10
sgammon/hashlock

sgammon/hashlock

Library, CLI, and GitHub Action for verifying hashes

4/10
atlassian/gajira-find-issue-key

atlassian/gajira-find-issue-key

1/10
PoliticalSphere/ci/.github/actions/ps-pr-comment

PoliticalSphere/ci/.github/actions/ps-pr-comment

CI/CD pipelines and GitHub Actions for Political Sphere

2/10
pytorch/vision/test-infra/.github/actions/setup-miniconda

pytorch/vision/test-infra/.github/actions/setup-miniconda

Datasets, Transforms and Models specific to Computer Vision

4/10
Maintained action available
actions/setup-dotnet

actions/setup-dotnet

Set up your GitHub Actions workflow with a specific version of the .NET core sdk

7/10