StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

GitGuardian/ggshield/actions/iac

GitGuardian/ggshield/actions/iac

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

7/10
actions/upload-artifact/merge

actions/upload-artifact/merge

7/10
messense/maturin-action

messense/maturin-action

GitHub Action to install and run a custom maturin command with built-in support for cross compilation

6/10
chainguard-dev/actions/eof-newline

chainguard-dev/actions/eof-newline

A collection of reusable Github Actions workflows.

8/10
buildsville/list-pull-requests

buildsville/list-pull-requests

3/10
denolib/setup-deno

denolib/setup-deno

Set up your GitHub Actions workflow with a specific version of deno

3/10
JasonEtco/is-sponsor-label-action

JasonEtco/is-sponsor-label-action

💖🔖 A GitHub Action that labels issues/PRs if the author sponsors the owner of the repo

3/10
mauroalderete/action-assign-labels

mauroalderete/action-assign-labels

Assign labels to pull-request parsing conventional commits standard

4/10
chainguard-dev/octo-sts-action

chainguard-dev/octo-sts-action

6/10
grafana/prometheus-alertmanager/.github/promci/actions/publish_main

grafana/prometheus-alertmanager/.github/promci/actions/publish_main

Prometheus Alertmanager

5/10
grafana/github-actions-testrepo/actions/bump-version

grafana/github-actions-testrepo/actions/bump-version

4/10
coveo/ui-kit/.github/actions/e2e-headless-ssr-search-nextjs-app-router

coveo/ui-kit/.github/actions/e2e-headless-ssr-search-nextjs-app-router

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
Maintained action available
siemens/ix/.github/workflows/actions/sbom

siemens/ix/.github/workflows/actions/sbom

Siemens Industrial Experience is a design system for designers and developers, to consistently create the perfect digital experience for industrial software products.

6/10
step-security/gh-actions-lua/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/gh-actions-lua/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

GitHub action for Lua/LuaJIT. Secure drop-in replacement for leafo/gh-actions-lua.

10/10
step-security/fetch-gh-release-asset/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/fetch-gh-release-asset/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Github Action to download an asset from a Github release. Secure drop-in replacement for dsaltares/fetch-gh-release-asset.

10/10
NVIDIA/cuEquivariance/.github/actions/setup-cuequivariance

NVIDIA/cuEquivariance/.github/actions/setup-cuequivariance

cuEquivariance is a math library that is a collective of low-level primitives and tensor ops to accelerate widely-used models, like DiffDock, MACE, Allegro and NEQUIP, based on equivariant neural networks. Also includes kernels for accelerated structure prediction.

3/10
Maintained action available
chabad360/htmlproofer

chabad360/htmlproofer

🚀 Test your rendered HTML files to make sure they're accurate. 🚀

3/10
Dargon789/aa-sdk/.github/actions/setup-docs

Dargon789/aa-sdk/.github/actions/setup-docs

6/10
external-secrets/external-secrets/.github/actions/e2e

external-secrets/external-secrets/.github/actions/e2e

External Secrets Operator reads information from a third-party service like AWS Secrets Manager and automatically injects the values as Kubernetes Secrets.

7/10
niden/actions-memcached

niden/actions-memcached

Memcached container based on Alpine for Github Actions

3/10