StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

aerospike/aerospike-client-java/.github/actions/get-version

aerospike/aerospike-client-java/.github/actions/get-version

Aerospike Java Client Library

6/10
projectdiscovery/actions/setup/python

projectdiscovery/actions/setup/python

ProjectDiscovery's Composite Actions

7/10
step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-content/uploads/2017/07

step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-content/uploads/2017/07

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
openzeppelin/openzeppelin-monitor/.github/actions/prepare

openzeppelin/openzeppelin-monitor/.github/actions/prepare

A blockchain monitoring service that watches for specific on-chain activities and triggers notifications based on configurable conditions.

4/10
Maintained action available
pytorch/hub/test-infra/.github/actions/calculate-docker-image

pytorch/hub/test-infra/.github/actions/calculate-docker-image

Submission to https://pytorch.org/hub/

2/10
launchdarkly/js-sdk-common/.github/actions/publish-npm

launchdarkly/js-sdk-common/.github/actions/publish-npm

Code shared between all LaunchDarkly client-side JS-based SDKs

5/10
Maintained action available
yonasbsd/bitwarden-mobile/.github/actions/log-inputs

yonasbsd/bitwarden-mobile/.github/actions/log-inputs

The mobile app vault (iOS and Android).

7/10
step-security/dotenv

step-security/dotenv

GitHub Action to read .env file and add variables to GITHUB_ENV. Secure drop-in replacement for xom9ikk/dotenv.

10/10
Maintained by StepSecurity
ministryofjustice/money-to-prisoners-bank-admin/.github/actions/clean-ecr

ministryofjustice/money-to-prisoners-bank-admin/.github/actions/clean-ecr

Bank Admin โ€“ SSCL staff facing site for Prisoner Money suite of apps

7/10
anysphere/docker-cache

anysphere/docker-cache

Cache Docker Images Whether Built or Pulled

2/10
roadiehq/backstage-entity-validator

roadiehq/backstage-entity-validator

Validate properties and well known annotations in your Backstage catalog-info.yaml files.

3/10
Maintained action available
fortify/github-action/internal/run-script/js

fortify/github-action/internal/run-script/js

Fortify GitHub Actions

4/10
Maintained action available
authzed/action-spicedb-validate

authzed/action-spicedb-validate

GitHub Action for validating your SpiceDB schema

4/10
step-security/changed-files/__builder_checkout_dir__/.github/actions/privacy-check

step-security/changed-files/__builder_checkout_dir__/.github/actions/privacy-check

Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories. Secure drop-in replacement for tj-actions/changed-files.

10/10
scottbrenner/cfn-lint-action

scottbrenner/cfn-lint-action

GitHub Action for interacting with CloudFormation Linter

8/10
yonasbsd/linkerd2/.github/actions/cli-setup

yonasbsd/linkerd2/.github/actions/cli-setup

Ultralight, security-first service mesh for Kubernetes. Main repo for Linkerd 2.x.

5/10
Maintained action available
nvidia-nemo/automodel/.github/actions/build-container

nvidia-nemo/automodel/.github/actions/build-container

๐Ÿš€ Pytorch Distributed native training library for LLMs/VLMs with OOTB Hugging Face support

8/10
at-wat/go-sum-fix-action

at-wat/go-sum-fix-action

GitHub Action to update go.sum. (Mainly for working with Renovate Bot which sometimes lacks package sum.)

4/10
insightsengineering/pip-action

insightsengineering/pip-action

Github Action to install Python PIP packages ๐Ÿ ๐Ÿ“ฆ

4/10
step-security/action-gh-release/__builder_checkout_dir__/.github/actions/compute-sha256

step-security/action-gh-release/__builder_checkout_dir__/.github/actions/compute-sha256

GitHub Action for creating GitHub Releases. Secure drop-in replacement for softprops/action-gh-release.

10/10