StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

codex-/await-remote-run

codex-/await-remote-run

βœ… Await the completion of a foreign repository Workflow Run given the Run ID.

4/10
Maintained action available
git-hub-chris/visualstudiocode/actions/english-please

git-hub-chris/visualstudiocode/actions/english-please

Microsoft Visual Studio Code.

6/10
step-security/npm-get-version-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/npm-get-version-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

This Action scans for a package.json file and reads the version number from that. Secure drop-in replacement for martinbeentjes/npm-get-version-action.

10/10
step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-json

step-security/ansible-galaxy-action/__builder_checkout_dir__/.github/actions/wp-json

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
ministryofjustice/opg-github-actions/actions/terraform-workspace-manager

ministryofjustice/opg-github-actions/actions/terraform-workspace-manager

OPG shared GitHub composite actions for workflows.: Managed by opg-org-infra & Terraform

6/10
freshaengineering/buf-action

freshaengineering/buf-action

[gRPC] Fork of Buf GitHub Action - builds, lints, formats, checks breaking changes, and publishes schemas to BSR with PR comments. | TypeScript | Buf, GitHub Actions

3/10
nam20485/docs-1/.github/actions/node-npm-setup

nam20485/docs-1/.github/actions/node-npm-setup

The open-source repo for docs.github.com

0/10
sasobadovinac/pytorch/.github/actions/setup-rocm

sasobadovinac/pytorch/.github/actions/setup-rocm

Tensors and Dynamic neural networks in Python with strong GPU acceleration

4/10
Maintained action available
caffeelake/dotenvx/.github/actions/commit-binary-to-github

caffeelake/dotenvx/.github/actions/commit-binary-to-github

a secure dotenv–from the creator of `dotenv`

3/10
simenb/github-actions-cpu-cores

simenb/github-actions-cpu-cores

4/10
Maintained action available
coveord/spinnaker/.github/actions/generic-build-publish

coveord/spinnaker/.github/actions/generic-build-publish

Spinnaker is an open source, multi-cloud continuous delivery platform for releasing software changes with high velocity and confidence.

3/10
chronograph-pe/rebase

chronograph-pe/rebase

A GitHub action to rebase pull requests in a repository

2/10
kong/public-shared-actions/pr-previews/cleanup

kong/public-shared-actions/pr-previews/cleanup

Shared actions available to both public and private repositories

5/10
Maintained action available
rasahq/deploy-tags

rasahq/deploy-tags

2/10
anysphere/delete-cancelled-runs

anysphere/delete-cancelled-runs

Deletes cancelled runs for a given workflow

3/10
databricks/setup-bricks

databricks/setup-bricks

Sets up the Databricks CLI in your GitHub Actions workflow.

5/10
Maintained action available
cisagov/action-apb-dashboard

cisagov/action-apb-dashboard

8/10
aerospike/shared-workflows/.github/actions/extract-version-from-tag

aerospike/shared-workflows/.github/actions/extract-version-from-tag

automation workflows

8/10
hiero-ledger/hiero-sdk-cpp/.github/actions/setup-bot

hiero-ledger/hiero-sdk-cpp/.github/actions/setup-bot

A C++ SDK for Hiero: A C++ toolkit for creating, updating, and interacting with on-ledger assets and smart contracts on Hedera and other Hiero networks

7/10
devantler-tech/ksail/.github/actions/cache-ksail-binary

devantler-tech/ksail/.github/actions/cache-ksail-binary

All-in-one Kubernetes SDK: create, manage, and operate clusters across distributions (Kind, K3d, Talos, VCluster) with built-in GitOps, secrets, AI assistant, and MCP server. Only requires Docker or a Cloud Provider.

3/10
Maintained action available