StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

metamask/github-tools/.github/actions/setup-environment

metamask/github-tools/.github/actions/setup-environment

An assortment of tools interacting with the GitHub API to get metrics for things like PR review comments/reviews

5/10
Maintained action available
docker/scout-action

docker/scout-action

Docker Scout GitHub Action

3/10
warriors-life/.warriors-life-workflows/test-docker-image

warriors-life/.warriors-life-workflows/test-docker-image

Warriors Life's reusable GitHub Actions workflows

3/10
e1himself/goss-installation-action

e1himself/goss-installation-action

Github Action to install goss (and friends: dgoss, dcgoss, kgoss)

2/10
yonasBSD/wazuh/.github/actions/coverage_cpp

yonasBSD/wazuh/.github/actions/coverage_cpp

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

4/10
Maintained action available
step-security/setup-just/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/setup-just/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

🤖 GitHub Action to install the just command runner. Secure drop-in replacement for extractions/setup-just.

10/10
step-security/git-restore-mtime-action

step-security/git-restore-mtime-action

A GitHub Workflow Action which restores timestamps of files in the current tree. Secure drop-in replacement for chetan/git-restore-mtime-action.

10/10
Maintained by StepSecurity
SonarSource/ci-github-actions/build-gradle

SonarSource/ci-github-actions/build-gradle

CI/CD GitHub Actions

5/10
Maintained action available
Kong/gh-storage/download

Kong/gh-storage/download

Use a GitHub hosted repository to store and retrieve files

3/10
bewuethr/mdl-action

bewuethr/mdl-action

A GitHub Action to run the Ruby Markdown linter mdl

5/10
AleksandrFurmenkovOfficial/ai-code-review

AleksandrFurmenkovOfficial/ai-code-review

AI Code Review is a lightweight, simple GitHub Action that supports various AI models to analyze and provide feedback on your code. This GitHub Action helps improve code quality by automatically reviewing pull requests, focusing on specified file extensions, and excluding specific paths.

6/10
Git-Hub-Chris/VisualStudioCode/actions/tag-alert

Git-Hub-Chris/VisualStudioCode/actions/tag-alert

Microsoft Visual Studio Code.

6/10
walletconnect/actions/github/cta-assistant

walletconnect/actions/github/cta-assistant

WalletConnect GitHub Actions

4/10
Maintained action available
pytorch/torchrec/test-infra/.github/actions/run-script-with-cache

pytorch/torchrec/test-infra/.github/actions/run-script-with-cache

Pytorch domain library for recommendation systems

3/10
Maintained action available
celo-org/op-succinct/.github/actions/setup

celo-org/op-succinct/.github/actions/setup

Succinct's Production-Grade Proving Engine for the OP Stack

6/10
peter-evans/autopep8

peter-evans/autopep8

A GitHub action for autopep8, a tool that automatically formats Python code to conform to the PEP 8 style guide.

4/10
pytorch/test-infra/.github/actions/bc-lint

pytorch/test-infra/.github/actions/bc-lint

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

3/10
Maintained action available
LedgerHQ/ledger-live/tools/actions/composites/setup-caches

LedgerHQ/ledger-live/tools/actions/composites/setup-caches

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
Maintained action available
hashicorp/actions-persist-metadata

hashicorp/actions-persist-metadata

Persists metadata used by Common Release Tooling

6/10
step-security/set-github-variable/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/set-github-variable/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Use this Github Action to update a variable in your Github Action Workflows for your repository. Secure drop-in replacement for mmoyaferrer/set-github-variable.

10/10