StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

kyverno/action-install-chainsaw

kyverno/action-install-chainsaw

GitHub Action to install Chainsaw

6/10
step-security/docker-login-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/docker-login-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

GitHub Action to login against a Docker registry. Secure drop-in replacement for docker/login-action.

8/10
ajgranowski/preceding-tag-action

ajgranowski/preceding-tag-action

Find the most recent tag that is reachable from a commit.

8/10
rapidsai/shared-actions/telemetry-impls/clean-up-artifacts

rapidsai/shared-actions/telemetry-impls/clean-up-artifacts

6/10
itchyny/actions-stale

itchyny/actions-stale

Marks issues and pull requests that have not had recent interaction

2/10
bitwarden/gh-actions/azure-logout

bitwarden/gh-actions/azure-logout

Bitwarden-utilized GitHub Actions.

6/10
grafana/agent/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/agent/_shared-workflows-dockerhub-login/actions/get-vault-secrets

Vendor-neutral programmable observability pipelines.

5/10
pkgr/action/package

pkgr/action/package

GitHub Action for packaging apps as DEB or RPM

2/10
step-security/setup-tflint

step-security/setup-tflint

A GitHub action that installs Terraform linter TFLint. Secure drop-in replacement for terraform-linters/setup-tflint.

10/10
Maintained by StepSecurity
lfreleng-actions/zizmor-scan-action

lfreleng-actions/zizmor-scan-action

Zizmor scanning tool reusable workflow

4/10
launchdarkly/go-ntlmssp/.github/actions/get-go-version

launchdarkly/go-ntlmssp/.github/actions/get-go-version

NTLM/Negotiate authentication over HTTP - fork for use with ld-relay

3/10
step-security/quarto-actions/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/quarto-actions/__builder_checkout_dir__/.github/actions/secure-download-artifact

Secure drop-in replacement for quarto-dev/quarto-actions.

10/10
stacklok/trusty-action

stacklok/trusty-action

Trusty Dependency Risk Action

4/10
coveo/ui-kit/.github/actions/e2e-quantic-cypress

coveo/ui-kit/.github/actions/e2e-quantic-cypress

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
Maintained action available
nvidia/aicr/.github/actions/security-scan

nvidia/aicr/.github/actions/security-scan

Tooling for optimized, validated, and reproducible GPU-accelerated AI runtime in Kubernetes

7/10
devops-actions/secure-action-inputs

devops-actions/secure-action-inputs

Run security scan on incoming inputs from GitHub Actions events

4/10
dflook/terraform-fmt-check

dflook/terraform-fmt-check

GitHub action to check the formatting of terraform files

2/10
ory/ci/licenses/check

ory/ci/licenses/check

Automation and robots for Ory's CI and CD pipelines

4/10
rinchsan/renovate-config-validator

rinchsan/renovate-config-validator

:white_check_mark: Validate Renovate config in GitHub Actions

4/10
Maintained action available
giraffate/clippy-action

giraffate/clippy-action

3/10