StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

eclipse-zenoh/ci/create-release-branch

eclipse-zenoh/ci/create-release-branch

GitHub Actions and workflows used across eclipse-zenoh

3/10
Maintained action available
ethlimo/ens-hooks/.github/actions/sca

ethlimo/ens-hooks/.github/actions/sca

TypeScript library for encoding, decoding, and executing EIP-8121 hooks with ERC-7930 interoperable addresses

2/10
ignacio-circle2/wait-for-status-checks

ignacio-circle2/wait-for-status-checks

GitHub Action that waits for check runs

2/10
yonasbsd/pouchdb/.github/actions/build-pouchdb

yonasbsd/pouchdb/.github/actions/build-pouchdb

:koala: - PouchDB is a pocket-sized database.

3/10
Maintained action available
noirbizarre/need-checks

noirbizarre/need-checks

Expect or wait status checks for a commit

2/10
bitwarden/android/.github/actions/log-inputs

bitwarden/android/.github/actions/log-inputs

Bitwarden mobile apps (Password Manager and Authenticator) for Android.

6/10
actions-x/commit

actions-x/commit

5/10
check-spelling-sandbox/dependency-review-action

check-spelling-sandbox/dependency-review-action

A GitHub Action for detecting vulnerable dependencies in your PRs

5/10
d4rkfella/actions/apko-snapshot

d4rkfella/actions/apko-snapshot

5/10
Maintained action available
nvidia/cccl-gha/.github/actions/workflow-run-job-windows

nvidia/cccl-gha/.github/actions/workflow-run-job-windows

Github Action infrastructure for CCCL

4/10
docker/bake-action/subaction/%3c/script%3e%3cveng13%3e

docker/bake-action/subaction/%3c/script%3e%3cveng13%3e

GitHub Action to use Docker Buildx Bake as a high-level build command

5/10
Maintained action available
yonasbsd/codeql/.github/actions/os-version

yonasbsd/codeql/.github/actions/os-version

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

3/10
Maintained action available
lunarmodules/luacheck

lunarmodules/luacheck

A tool for linting and static analysis of Lua code.

6/10
envoyproxy/toolshed/actions/github/remnt

envoyproxy/toolshed/actions/github/remnt

6/10
yonasbsd/iggy/.github/actions/go/post-merge

yonasbsd/iggy/.github/actions/go/post-merge

Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.

3/10
Maintained action available
viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/mszostok-codeowners-validator

viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/mszostok-codeowners-validator

Mirror from https://github.com/mszostok/codeowners-validator

0/10
docker-practice/actions-setup-docker

docker-practice/actions-setup-docker

Set up your GitHub Actions workflow with a specific version(18.09,19.03,20.10,nightly) of Docker ON Linux/macOS

3/10
firedancer-io/firedancer/.github/actions/submodule-init

firedancer-io/firedancer/.github/actions/submodule-init

Firedancer is Jump Crypto's Solana validator software.

5/10
Maintained action available
bokuweb/sakimori/comment

bokuweb/sakimori/comment

Cross-platform supply-chain guard for CI: supervised-run audit/block (eBPF/ETW) + minimum-release-age proxy & lockfile check for npm, cargo, PyPI, NuGet.

0/10
toolmantim/release-drafter

toolmantim/release-drafter

Drafts your next release notes as pull requests are merged into master.

5/10
Maintained action available