StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/actions-rs-toolchain

step-security/actions-rs-toolchain

๐Ÿ› ๏ธ GitHub Action for `rustup` commands. Secure drop-in replacement for actions-rs/toolchain.

10/10
Maintained by StepSecurity
step-security/conventional-changelog-action/__builder_checkout_dir__/.github/actions/privacy-check

step-security/conventional-changelog-action/__builder_checkout_dir__/.github/actions/privacy-check

Github Action that generates a changelog with the Conventional Changelog CLI. Secure drop-in replacement for TriPSs/conventional-changelog-action.

10/10
anbiona/gale/.github/workflows/runner-setup

anbiona/gale/.github/workflows/runner-setup

Hardened personal server based on secureblue.

6/10
dolthub/label-customer-issues

dolthub/label-customer-issues

A GitHub Action to apply a label to issues and PRs created by authors who are not members of the team that owns a repo.

3/10
pytorch/test-infra/.github/actions/teardown-linux

pytorch/test-infra/.github/actions/teardown-linux

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

4/10
Maintained action available
datadog/integrations-core/.github/actions/setup-test-target-scripts

datadog/integrations-core/.github/actions/setup-test-target-scripts

Core integrations of the Datadog Agent

4/10
Maintained action available
smartcontractkit/.github/actions/ctf-check-mod-version

smartcontractkit/.github/actions/ctf-check-mod-version

reusable GHA workflows and actions

5/10
Maintained action available
caffeelake/llvm-project/workflows-main/.github/workflows/release-binaries-setup-stage

caffeelake/llvm-project/workflows-main/.github/workflows/release-binaries-setup-stage

The LLVM Project is a collection of modular and reusable compiler and toolchain technologies.

2/10
anolilab/workflows/step/setup

anolilab/workflows/step/setup

Shared Github Actions for Node.js projects and Monorepos.

5/10
Maintained action available
nvidia/nodewright/.github/actions/cosign-verify-release

nvidia/nodewright/.github/actions/cosign-verify-release

A Kubernetes Operator to manage Node OS customizations.

7/10
kong/changed-files/dir1

kong/changed-files/dir1

fork of changed files git action at a known good commit

4/10
marko-k0/ic/.github/actions/bazel

marko-k0/ic/.github/actions/bazel

Internet Computer blockchain source: the client/replica software run by nodes

2/10
surrealdb/rocksdb/.github/actions/install-maven

surrealdb/rocksdb/.github/actions/install-maven

A library that provides an embeddable, persistent key-value store for fast storage.

6/10
canonical/setup-lxd

canonical/setup-lxd

A GitHub Action to install & configure LXD on a runner.

4/10
Maintained action available
freshaengineering/merge-gatekeeper

freshaengineering/merge-gatekeeper

[DevEx] PR merge control - Branch protection enhancement, merge requirements validation, status check aggregation. | TypeScript, GitHub Actions

3/10
rapidsai/pre-commit-hooks/.github/actions/earliest-python-version

rapidsai/pre-commit-hooks/.github/actions/earliest-python-version

7/10
step-security/devcontainers-ci

step-security/devcontainers-ci

A GitHub Action and Azure DevOps Task designed to simplify using Dev Containers (https://containers.dev) in CI/CD systems. Secure drop-in replacement for devcontainers/ci.

10/10
Maintained by StepSecurity
step-security/paths-filter/__builder_checkout_dir__/.github/actions/privacy-check

step-security/paths-filter/__builder_checkout_dir__/.github/actions/privacy-check

Conditionally run actions based on files modified by PR, feature branch or pushed commits. Secure drop-in replacement for dorny/paths-filter.

10/10
chad-golden/setup-wpr/stop

chad-golden/setup-wpr/stop

A GitHub Action that simplifies recording Windows performance traces using Windows Performance Recorder

3/10
nvidia/kai-scheduler/.github/actions/setup-e2e-cluster

nvidia/kai-scheduler/.github/actions/setup-e2e-cluster

KAI Scheduler is an open source Kubernetes Native scheduler for AI workloads at large scale

7/10