StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

sonarsource/sonarqube-github-c-cpp

sonarsource/sonarqube-github-c-cpp

Deprecated. Use https://github.com/SonarSource/sonarqube-scan-action instead.

6/10
launchdarkly/cpp-sdks/.github/actions/install-curl

launchdarkly/cpp-sdks/.github/actions/install-curl

C++ Client/Server SDKs

6/10
anatawa12/sh-actions/conventional-commitlint

anatawa12/sh-actions/conventional-commitlint

shell actions by anatawa12

3/10
launchdarkly/php-server-sdk-dynamodb/.github/actions/publish-docs/robots.txt

launchdarkly/php-server-sdk-dynamodb/.github/actions/publish-docs/robots.txt

DynamoDB integration for the LaunchDarkly SDK for Server-side PHP

5/10
grafana/plugin-ci-workflows/actions/plugins/package

grafana/plugin-ci-workflows/actions/plugins/package

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

6/10
caffeelake/moby/.github/actions/setup-tracing

caffeelake/moby/.github/actions/setup-tracing

The Moby Project - a collaborative project for the container ecosystem to assemble container-based systems

5/10
wospm/wospm-checker-github-action

wospm/wospm-checker-github-action

WOSPM Checker Github Action

3/10
aws-actions/closed-issue-message

aws-actions/closed-issue-message

Github Action to set a default message to be commented on all issues when they get closed.

4/10
yonasbsd/iggy/.github/actions/python-maturin/public-layout.tsx

yonasbsd/iggy/.github/actions/python-maturin/public-layout.tsx

Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.

3/10
Maintained action available
github-community-projects/issue-metrics

github-community-projects/issue-metrics

Gather metrics on issues/prs/discussions such as time to first response, count of issues opened, closed, etc.

7/10
mercari/github-app-token-generator

mercari/github-app-token-generator

A simple github action written in go to retrieve an installation access token for an app installed into an organization.

4/10
vmoens/test-infra/test-infra/.github/actions/setup-linux

vmoens/test-infra/test-infra/.github/actions/setup-linux

This repository hosts code that supports the testing infrastructure for the main PyTorch repo. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

0/10
sailikhith-stepsecurity/hello-action

sailikhith-stepsecurity/hello-action

2/10
codescan-io/codescan-scanner-action

codescan-io/codescan-scanner-action

Github Action which helps to run CodeScan or SonarQube jobs in Github workflow. The action may produce SARIF file with analysis results.

3/10
step-security/action-read-yaml/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/action-read-yaml/__builder_checkout_dir__/.github/actions/secure-download-artifact

Custom github action used to read yaml files, supporting multiple keys and variable replacements. Secure drop-in replacement for pietrobolcato/action-read-yaml.

10/10
theappnest/terraform-monorepo-action

theappnest/terraform-monorepo-action

A GitHub action to return an array of paths to Terraform modules.

2/10
dev-drprasad/delete-older-releases

dev-drprasad/delete-older-releases

Github Action to delete older releases

5/10
coveo/ui-kit/.github/actions/cypress-atomic-search-nextjs-pages-router

coveo/ui-kit/.github/actions/cypress-atomic-search-nextjs-pages-router

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
Maintained action available
microsoft/playwright-github-action

microsoft/playwright-github-action

Run Playwright tests on GitHub Actions

4/10
enricomi/publish-unit-test-result-action/composite

enricomi/publish-unit-test-result-action/composite

GitHub Action to publish unit test results on GitHub

5/10
Maintained action available