StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

openzeppelin/openzeppelin-upgrades/.github/actions/setup

openzeppelin/openzeppelin-upgrades/.github/actions/setup

Plugins for Hardhat and Foundry to deploy and manage upgradeable contracts on Ethereum.

2/10
Maintained action available
dawidd6/action-ansible-playbook

dawidd6/action-ansible-playbook

:gear: A GitHub Action for running Ansible playbooks

6/10
solana-developers/github-actions/extract-versions

solana-developers/github-actions/extract-versions

A collection of github actions to build, idl upload and verify programs. With Squads support

2/10
approved-3rd-party-actions/upload-mobile-app-github-action

approved-3rd-party-actions/upload-mobile-app-github-action

The Github action to upload an mobile app file to Kobiton Apps Repo

3/10
officedev/teamsfx-cli-action

officedev/teamsfx-cli-action

teasmfx CI/CD action

3/10
step-security/gh-setup/__builder_checkout_dir__/.github/actions/privacy-check

step-security/gh-setup/__builder_checkout_dir__/.github/actions/privacy-check

:octocat: Setup asset of Github releases. Secure drop-in replacement for k1LoW/gh-setup.

10/10
aquasecurity/tfsec-pr-commenter-action

aquasecurity/tfsec-pr-commenter-action

Add comments to pull requests where tfsec checks have failed

4/10
armbian/build

armbian/build

The official build framework for the Armbian Linux distribution. This repository contains the complete toolchain and scripts required to compile custom OS images from source, including kernel configuration, U-Boot handling, and board-specific tweaks for various ARM and ARM64 single-board computers.

8/10
step-security/hide-comment-action

step-security/hide-comment-action

Action to hide (minimize) comments in pull request. Secure drop-in replacement for int128/hide-comment-action.

10/10
Maintained by StepSecurity
step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-content/uploads/2017/10/relish-video-production.png

step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-content/uploads/2017/10/relish-video-production.png

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
tomasreyes/node/node/.github/actions/install-clang

tomasreyes/node/node/.github/actions/install-clang

Node.js JavaScript runtime โœจ๐Ÿข๐Ÿš€โœจ

4/10
Maintained action available
asdf-vm/actions/plugins-add

asdf-vm/actions/plugins-add

GitHub Actions for the asdf version manager

4/10
step-security/action-read-yaml/__builder_checkout_dir__/.github/actions/privacy-check

step-security/action-read-yaml/__builder_checkout_dir__/.github/actions/privacy-check

Custom github action used to read yaml files, supporting multiple keys and variable replacements. Secure drop-in replacement for pietrobolcato/action-read-yaml.

10/10
prometheus/promci-artifacts/restore

prometheus/promci-artifacts/restore

GitHub Actions for artifact persistence between jobs

5/10
sonarsource/ci-github-actions/promote

sonarsource/ci-github-actions/promote

CI/CD GitHub Actions

6/10
burningalchemist/action-gh-nfpm

burningalchemist/action-gh-nfpm

nFPM Packager action

2/10
rapidsai/sccache/.github/actions/artifact_failure

rapidsai/sccache/.github/actions/artifact_failure

Sccache is a ccache-like tool. It is used as a compiler wrapper and avoids compilation when possible. Sccache has the capability to utilize caching in remote storage environments, including various cloud storage options, or alternatively, in local storage.

5/10
Maintained action available
tomhjp/gh-action-jira-comment

tomhjp/gh-action-jira-comment

Add a comment to a Jira issue using GitHub actions

3/10
intheclouddan/publish-vscode-extension

intheclouddan/publish-vscode-extension

GitHub action to publish your VS Code Extension to the Open VSX Registry or Visual Studio Marketplace.

2/10
zephyrproject-rtos/action-first-interaction

zephyrproject-rtos/action-first-interaction

An action for filtering pull requests and issues from first-time contributors

4/10