StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

fabasoad/yaml-json-xml-converter-action

fabasoad/yaml-json-xml-converter-action

GitHub action that converts YAML/JSON/XML file formats interchangeably

2/10
robertdebock/molecule-action

robertdebock/molecule-action

Test Ansible roles using Molecule

3/10
metadaoproject/setup-anchor

metadaoproject/setup-anchor

Optimized GitHub action to install Anchor

4/10
step-security/chart-testing-action

step-security/chart-testing-action

A GitHub Action to lint and test Helm charts. Secure drop-in replacement for helm/chart-testing-action.

10/10
Maintained by StepSecurity
docker/bake-action/qx9ds2%20%3cxs1%2f%26

docker/bake-action/qx9ds2%20%3cxs1%2f%26

GitHub Action to use Docker Buildx Bake as a high-level build command

5/10
Maintained action available
cardinalby/webext-buildtools-firefox-addons-action

cardinalby/webext-buildtools-firefox-addons-action

Deploy extension to Firefox Addons and sign xpi file

2/10
dev-hanz-ops/install-gh-cli-action

dev-hanz-ops/install-gh-cli-action

Action to Install the (cached) gihub cli

1/10
andresz1/size-limit-action

andresz1/size-limit-action

Compare the real cost to run your JS app or lib to keep good performance in every pull request

3/10
grafana/faro-web-sdk/actions/commands

grafana/faro-web-sdk/actions/commands

The Grafana Faro Web SDK, part of the Grafana Faro project, is a highly configurable web SDK for real user monitoring (RUM) that instruments browser frontend applications to capture observability signals. Frontend telemetry can then be correlated with backend and infrastructure data for full-stack observability.

7/10
step-security/quarto-actions/render

step-security/quarto-actions/render

Secure drop-in replacement for quarto-dev/quarto-actions.

10/10
Maintained by StepSecurity
xyzzylabs/setup-zig

xyzzylabs/setup-zig

Install a Zig compiler for usage in GitHub Actions workflows.

6/10
step-security/protobuf-ci/../../_actions/current/internal/docker-run

step-security/protobuf-ci/../../_actions/current/internal/docker-run

A shared repository for Protobuf CI actions. Secure drop-in replacement for protocolbuffers/protobuf-ci.

10/10
vmoens/test-infra/test-infra/.github/actions/pull-docker-image

vmoens/test-infra/test-infra/.github/actions/pull-docker-image

This repository hosts code that supports the testing infrastructure for the main PyTorch repo. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

0/10
r0zar/sam-deploy-action

r0zar/sam-deploy-action

AWS SAM Deploy Action

3/10
yunojuno/heroku-git-push

yunojuno/heroku-git-push

Minimal action for git push to heroku

2/10
rebilly/lexi

rebilly/lexi

Reduce content complexity

4/10
k2bd/advent-readme-stars

k2bd/advent-readme-stars

A GitHub Action that automatically reports your Advent of Code progress in a table in your README

3/10
metamask/github-tools/.github/actions/setup-environment

metamask/github-tools/.github/actions/setup-environment

An assortment of tools interacting with the GitHub API to get metrics for things like PR review comments/reviews

5/10
Maintained action available
launchdarkly/okhttp-eventsource/.github/actions/ci

launchdarkly/okhttp-eventsource/.github/actions/ci

Server-sent events (SSE) client implementation for Java, based on OkHttp: http://javadoc.io/doc/com.launchdarkly/okhttp-eventsource

4/10
Maintained action available
pytorch/torchrec/test-infra/.github/actions/public-layout.tsx

pytorch/torchrec/test-infra/.github/actions/public-layout.tsx

Pytorch domain library for recommendation systems

3/10
Maintained action available