StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

andife/openvino/src/.github/actions/system_info

andife/openvino/src/.github/actions/system_info

OpenVINO™ is an open source toolkit for optimizing and deploying AI inference

3/10
step-security/trigger-workflow-and-wait/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/trigger-workflow-and-wait/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Trigger a workflow in another (or same) repository and wait for the job to finish. Secure drop-in replacement for convictional/trigger-workflow-and-wait.

10/10
haya14busa/action-depup

haya14busa/action-depup

Action which updates dependencies automatically

3/10
davideviolante/pr-automerge-action

davideviolante/pr-automerge-action

GitHub Action to automatically merge pull requests when approved by N reviewers.

3/10
Adyen/adyen-shopware5/.github/actions/build_plugin

Adyen/adyen-shopware5/.github/actions/build_plugin

6/10
igorskyflyer/action-readfile

igorskyflyer/action-readfile

🌬️ A GitHub Action to read an arbitrary file and either output it or use it in another GitHub Action. 🍃

2/10
step-security/github-action-aerospike/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/github-action-aerospike/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

GitHub Action to set up an Aerospike database. Secure drop-in replacement for reugn/github-action-aerospike.

10/10
snyk/actions/dotnet

snyk/actions/dotnet

A set of GitHub actions for checking your projects for vulnerabilities.

4/10
reviewdog/action-depup

reviewdog/action-depup

Action which updates dependencies automatically

3/10
grafana/shared-workflows/actions/docker-export-digest

grafana/shared-workflows/actions/docker-export-digest

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

6/10
rudderlabs/github-action-check-pr-title

rudderlabs/github-action-check-pr-title

Check PR title against conventional commit standard

3/10
ashishkurmi/harden-runner

ashishkurmi/harden-runner

GitHub Action to prevent certain types of software supply chain attacks

4/10
svenstaro/upx-action

svenstaro/upx-action

Strips and runs upx on binaries

3/10
walbo/validate-json

walbo/validate-json

Validate JSON files agains their `$schema`

2/10
venh/branch-protection

venh/branch-protection

Custom GitHub Action to apply / remove Branch Protection Rules to specified branches of repositories within a GitHub Organization

1/10
step-security/dispatch-workflow/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/dispatch-workflow/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

A GitHub Action to Dispatch and Discover GitHub Workflows using workflow_dispatch or repository_dispatch. Secure drop-in replacement for lasith-kg/dispatch-workflow.

10/10
ihub-pub/bot/publish

ihub-pub/bot/publish

IHub自动化工具应用集

8/10
aerospike/aerospike-client-python/.github/actions/update-version

aerospike/aerospike-client-python/.github/actions/update-version

Aerospike Python Client

4/10
Maintained action available
OrlovM/Wiki-Action

OrlovM/Wiki-Action

Action to update repository's wiki with changes from main repository.

3/10
chronograph-pe/prevent-file-change-action

chronograph-pe/prevent-file-change-action

Fail a pull request workflow if certain files are changed

2/10