StepSecurity Logo
Community Tier

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

advanced-security/sarif-toolkit/relativepaths

advanced-security/sarif-toolkit/relativepaths

All things SARIF, as an Action

6/10
elastic/elastic-otel-python/.github/actions/env-install

elastic/elastic-otel-python/.github/actions/env-install

8/10
spotdemo4/bumper

spotdemo4/bumper

git semantic version conventional commit bumper

4/10
fathym/github-tag-action

fathym/github-tag-action

A Github Action to tag a repo on merge.

3/10
JoshStern/push-md-to-notion

JoshStern/push-md-to-notion

Push Markdown to Notion

0/10
grafana/plugin-ci-workflows/actions/internal/plugins/publish/check-artifacts

grafana/plugin-ci-workflows/actions/internal/plugins/publish/check-artifacts

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

7/10
coveo/ui-kit/.github/actions/e2e-atomic-screenshots

coveo/ui-kit/.github/actions/e2e-atomic-screenshots

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

5/10
gagoar/invoke-aws-lambda

gagoar/invoke-aws-lambda

GitHub action to invoke AWS lambda

3/10
nais/deploy/actions/deploy

nais/deploy/actions/deploy

Nais deploy: multi-cluster Kubernetes deployments

5/10
wei/git-sync

wei/git-sync

🔃 A GitHub Action for syncing between two independent repositories using force push

3/10
firedancer-io/firedancer/.github/actions/cpusonline

firedancer-io/firedancer/.github/actions/cpusonline

Firedancer is Jump Crypto's Solana validator software.

8/10
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy/index.html

step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy/index.html

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
step-security/pull-request-comment-trigger/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/pull-request-comment-trigger/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

A github action for detecting a "trigger" in a pull request description or comment. Secure drop-in replacement for Khan/pull-request-comment-trigger.

10/10
peternied/check-pull-request-description-checklist

peternied/check-pull-request-description-checklist

GitHub action ensuring that pull requests have a description

4/10
pytorch/tensordict/test-infra/.github/actions/setup-miniconda

pytorch/tensordict/test-infra/.github/actions/setup-miniconda

TensorDict is a pytorch dedicated tensor container.

3/10
grafana/plugin-actions/package-manager-detect

grafana/plugin-actions/package-manager-detect

6/10
Nullify-Platform/dast-action

Nullify-Platform/dast-action

GitHub Action for Nullify DAST

6/10
google-github-actions/setup-gcloud

google-github-actions/setup-gcloud

A GitHub Action for installing and configuring the gcloud CLI.

7/10
jscrambler/code-integrity-actions/protect

jscrambler/code-integrity-actions/protect

Code Integrity Github Actions

2/10
nackerman-nydig/hadolint-action

nackerman-nydig/hadolint-action

GitHub action for Hadolint, A Dockerfile linting tool

3/10