StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

febiosoftware/febio-workflows/.github/actions/build

febiosoftware/febio-workflows/.github/actions/build

Reusable workflows and actions specific to FEBio, FEBioStudio, and FEBio plugins

3/10
Maintained action available
step-security/linkinator-action

step-security/linkinator-action

A GitHub Action that checks your README and other markdown for 404s. Secure drop-in replacement for JustinBeckwith/linkinator-action.

10/10
Maintained by StepSecurity
step-security/setup-uv

step-security/setup-uv

Set up your GitHub Actions workflow with a specific version of https://docs.astral.sh/uv/. Secure drop-in replacement for astral-sh/setup-uv.

10/10
Maintained by StepSecurity
spotdemo4/setup-git-app-user

spotdemo4/setup-git-app-user

GitHub Action that sets the git user and email from a token

3/10
ledgerhq/ledger-live/tools/actions/composites/setup-build-desktop

ledgerhq/ledger-live/tools/actions/composites/setup-build-desktop

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
Maintained action available
advanced-security/component-detection-dependency-submission-action

advanced-security/component-detection-dependency-submission-action

This GitHub Action runs the microsoft/component-detection library to automate dependency extraction at build time.

6/10
vercel/next.js/.github/actions/pr-auto-label

vercel/next.js/.github/actions/pr-auto-label

The React Framework

6/10
step-security/setup-terraform

step-security/setup-terraform

Sets up Terraform CLI in your GitHub Actions workflow. Secure drop-in replacement for hashicorp/setup-terraform.

10/10
Maintained by StepSecurity
kestra-io/actions/.github/actions/send-ci-failed

kestra-io/actions/.github/actions/send-ci-failed

3/10
Maintained action available
zizmorcore/zizmor

zizmorcore/zizmor

Static analysis for GitHub Actions

7/10
vexxhost/github-actions/build-docker-image

vexxhost/github-actions/build-docker-image

Common GitHub actions workflows

3/10
Maintained action available
surrealdb/surrealdb/.github/actions/docker-build

surrealdb/surrealdb/.github/actions/docker-build

A scalable, distributed, collaborative, document-graph database, for the realtime web

5/10
Maintained action available
databricks/run-notebook

databricks/run-notebook

4/10
debricked/actions/resolve-non-docker

debricked/actions/resolve-non-docker

Github Actions for integrating with Debricked

3/10
lfreleng-actions/pinned-versions-action

lfreleng-actions/pinned-versions-action

Ensures workflows are pinned to SHA commit values

6/10
yonasbsd/wazuh/.github/actions/legacy_unit_tests_build

yonasbsd/wazuh/.github/actions/legacy_unit_tests_build

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

4/10
Maintained action available
grafana/plugin-ci-workflows/actions/internal/plugins/frontend

grafana/plugin-ci-workflows/actions/internal/plugins/frontend

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

6/10
ministryofjustice/laa-submit-a-bulk-claim/.github/actions/port-forward

ministryofjustice/laa-submit-a-bulk-claim/.github/actions/port-forward

Web application for bulk upload of claims data

8/10
astral-sh/attest-action

astral-sh/attest-action

Generates PEP 740 attestations for your Python package distributions.

7/10
coveo/ui-kit/.github/actions/cypress-headless-ssr-search-nextjs-pages-router

coveo/ui-kit/.github/actions/cypress-headless-ssr-search-nextjs-pages-router

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
Maintained action available