StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

shanegenschaw/pull-request-comment-trigger

shanegenschaw/pull-request-comment-trigger

A github action for detecting a "trigger" in a pull request description or comment

1/10
grafana/clickhouse-datasource/actions/commands

grafana/clickhouse-datasource/actions/commands

Grafana Plugin for ClickHouse

6/10
sceptre/github-ci-action

sceptre/github-ci-action

2/10
step-security/action-surefire-report/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/action-surefire-report/__builder_checkout_dir__/.github/actions/secure-download-artifact

Reports surefire test results as GitHub Pull Request Check. Secure drop-in replacement for ScaCap/action-surefire-report.

9/10
neondatabase/gh-workflow-stats-action

neondatabase/gh-workflow-stats-action

GitHub Action to export Workflow statistic into Postgres

4/10
step-security/actions/melange-build

step-security/actions/melange-build

A collection of reusable Github Actions workflows.

7/10
derjuulsn/todo-issue

derjuulsn/todo-issue

๐Ÿค– GitHub Action which creates Issues from comments in your code

2/10
notaryproject/notation-action/sign

notaryproject/notation-action/sign

GitHub Actions for signing and verifying artifacts with Notation

5/10
ministryofjustice/opg-github-actions/.github/actions/safe-strings

ministryofjustice/opg-github-actions/.github/actions/safe-strings

OPG shared GitHub composite actions for workflows.: Managed by opg-org-infra & Terraform

7/10
xt0rted/dotnet-format-problem-matcher

xt0rted/dotnet-format-problem-matcher

A GitHub Action that registers a problem matcher for dotnet-format's report output

2/10
auguwu/clippy-action

auguwu/clippy-action

๐Ÿปโ€โ„๏ธ๐Ÿ“ฆ GitHub action to run Clippy, an up-to-date and modern version of actions-rs/clippy

5/10
Maintained action available
project-tick/project-tick/.github/actions/uvim/test_artifacts

project-tick/project-tick/.github/actions/uvim/test_artifacts

Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software.

2/10
step-security/github-actions-pr-is-linked-to-work-item/__builder_checkout_dir__/.github/actions/privacy-check

step-security/github-actions-pr-is-linked-to-work-item/__builder_checkout_dir__/.github/actions/privacy-check

Check for linked Azure DevOps work item. Secure drop-in replacement for danhellem/github-actions-pr-is-linked-to-work-item.

10/10
vedantmgoyal2009/winget-releaser

vedantmgoyal2009/winget-releaser

Publish new releases of your application to the Windows Package Manager easily.

4/10
Maintained action available
grafana/k6/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/k6/_shared-workflows-dockerhub-login/actions/get-vault-secrets

A modern load testing tool, using Go and JavaScript

6/10
katexochen/go-tidy-check

katexochen/go-tidy-check

GitHub action to check if your Go modules are tidy

2/10
coveo/search-ui/.github/actions/setup

coveo/search-ui/.github/actions/setup

Coveo Search UI framework

3/10
warriors-life/.warriors-life-workflows/build-docker-image

warriors-life/.warriors-life-workflows/build-docker-image

Warriors Life's reusable GitHub Actions workflows

3/10
sredevopsorg/cilium/.github/actions/helm-default

sredevopsorg/cilium/.github/actions/helm-default

eBPF-based Networking, Security, and Observability

3/10
step-security/proof-html/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/proof-html/__builder_checkout_dir__/.github/actions/secure-download-artifact

A GitHub Action to validate HTML, check links, and more โœ…. Secure drop-in replacement for anishathalye/proof-html.

10/10