StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

external-secrets/external-secrets/.github/actions/sign

external-secrets/external-secrets/.github/actions/sign

External Secrets Operator reads information from a third-party service like AWS Secrets Manager and automatically injects the values as Kubernetes Secrets.

7/10
fallard84/langchainjs/.github/actions/people

fallard84/langchainjs/.github/actions/people

๐Ÿฆœ๐Ÿ”— Build context-aware reasoning applications ๐Ÿฆœ๐Ÿ”—

3/10
johnabell/absinthe_field_telemetry

johnabell/absinthe_field_telemetry

A library for analysing absinthe GraphQL runtime usage

6/10
launchdarkly/gh-actions/actions/release-secrets

launchdarkly/gh-actions/actions/release-secrets

LaunchDarkly shared GitHub Actions and Workflows

6/10
sonarsource/release-github-actions/create-integration-ticket

sonarsource/release-github-actions/create-integration-ticket

A collection of reusable GitHub Actions to automate the analyzer release process. This toolbox offers modular automations to reduce manual work for squads, handling tasks like changelog generation, version bumps, and release publishing. These actions help teams focus on code quality by simplifying workflows.

5/10
Maintained action available
actionshub/dco

actionshub/dco

1/10
ivuorinen/actions/codeql-analysis

ivuorinen/actions/codeql-analysis

ivuorinen's shared actions

7/10
coveo/stew

coveo/stew

Complete Python CI/CD solution built around Poetry.

5/10
Maintained action available
linode/karpenter-provider-linode/.github/actions/e2e

linode/karpenter-provider-linode/.github/actions/e2e

Linode Karpenter provider

6/10
appetizeio/github-action-appetize

appetizeio/github-action-appetize

Github Action to facilitate interaction with the Appetize.io API

3/10
step-security/harden-runner

step-security/harden-runner

Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

9/10
bitwarden/gh-actions/version-bump

bitwarden/gh-actions/version-bump

Bitwarden-utilized GitHub Actions.

6/10
ambilykk/copilot-metrics-retention

ambilykk/copilot-metrics-retention

The Copilot Metrics API supplies data spanning a 28-day timeframe. This Action is designed to persistently store this data over time in a JSON file format.

2/10
step-security/action-size/__builder_checkout_dir__/.github/actions/privacy-check

step-security/action-size/__builder_checkout_dir__/.github/actions/privacy-check

๐Ÿ“ GitHub Action to determine a label to be added based on PR's size. Secure drop-in replacement for actions-ecosystem/action-size.

9/10
anchore/binny/.github/actions/bootstrap

anchore/binny/.github/actions/bootstrap

Manage a directory of binaries without a package manager

6/10
wuan/test-action

wuan/test-action

2/10
google-github-actions/create-cloud-deploy-release

google-github-actions/create-cloud-deploy-release

A GitHub Action for creating releases via Cloud Deploy.

4/10
babarot/action-github-comment

babarot/action-github-comment

GitHub Actions to post a text to GitHub issue / pull request

2/10
openzeppelin/openzeppelin-relayer/.github/actions/prepare

openzeppelin/openzeppelin-relayer/.github/actions/prepare

OpenZeppelin Relayer

4/10
Maintained action available
devantler-tech/actions/dependency-review

devantler-tech/actions/dependency-review

Actions designed to streamline CI/CD processes.

5/10
Maintained action available