StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

lumoin/trusted-devsecops/.github/actions/sign-artifact

lumoin/trusted-devsecops/.github/actions/sign-artifact

Reusable, security-critical DevSecOps workflows and tools for trusted open-source projects.

2/10
modeseven-lfreleng-actions/release-assets-action

modeseven-lfreleng-actions/release-assets-action

Uploads build artefacts and other workflow assets to a GitHub release

4/10
Maintained action available
os-climate/osc-github-devops/.github/actions/repository-inventory-action

os-climate/osc-github-devops/.github/actions/repository-inventory-action

Template Python project, common tests, GitHub Actions/Workflows, linting tools

2/10
mercari/terraform-provider-slack/.github/actions/setup-go

mercari/terraform-provider-slack/.github/actions/setup-go

2/10
actionshub/chef-install

actionshub/chef-install

Repository for the actionshub-chef-install Github Action

6/10
equinor/fusion-framework/.github/workflows/actions/build-packages

equinor/fusion-framework/.github/workflows/actions/build-packages

Fusion Framework, built and maintained to Fusion Core

6/10
yonasbsd/iggy/.github/actions/csharp-dotnet/pre-merge

yonasbsd/iggy/.github/actions/csharp-dotnet/pre-merge

Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.

3/10
Maintained action available
equinor/axe-slack-reporter

equinor/axe-slack-reporter

GH Action for reporting findings from axe-core to Slack using incoming web hook

4/10
ribtoks/parent-issue-update

ribtoks/parent-issue-update

GitHub Action that updates parent issues when child issue change

4/10
ministryofjustice/laa-ccms-common-workflows/.github/actions/define-snyk-arguments

ministryofjustice/laa-ccms-common-workflows/.github/actions/define-snyk-arguments

Common GitHub actions and workflows used by LAA CCMS projects.

8/10
raj-stepsecurity/jest-coverage-action-demo

raj-stepsecurity/jest-coverage-action-demo

5/10
step-security/run-vcpkg

step-security/run-vcpkg

The GitHub Action to setup vcpkg for your C++ based projects. Stores built ports using Binary Caching backed onto GH Cache. Secure drop-in replacement for lukka/run-vcpkg.

8/10
Maintained by StepSecurity
cilium/scale-tests-action/export-results

cilium/scale-tests-action/export-results

Repository that hosts the GitHub action to run scale tests

3/10
aerospike/aerospike-client-java/.github/actions/run-ee-server

aerospike/aerospike-client-java/.github/actions/run-ee-server

Aerospike Java Client Library

4/10
Maintained action available
ministryofjustice/opg-github-actions/actions/github-deploy-key

ministryofjustice/opg-github-actions/actions/github-deploy-key

OPG shared GitHub composite actions for workflows.: Managed by opg-org-infra & Terraform

7/10
ds0440/harden-runner

ds0440/harden-runner

Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

3/10
memospot/action-dagger

memospot/action-dagger

Enhanced Dagger GitHub Action

2/10
neondatabase/neon/.github/actions/neon-branch-create

neondatabase/neon/.github/actions/neon-branch-create

Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, code-like database branching, and scale to zero.

3/10
dawidd6/action-send-mail/_next/static/chunks/56007-f70128a03cac0e85.js

dawidd6/action-send-mail/_next/static/chunks/56007-f70128a03cac0e85.js

:gear: A GitHub Action to send an email to multiple recipients

5/10
Maintained action available
reviewdog/action-languagetool

reviewdog/action-languagetool

Run languagetool with reviewdog :dog:

3/10