StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

neondatabase/gh-workflow-stats-action

neondatabase/gh-workflow-stats-action

GitHub Action to export Workflow statistic into Postgres

4/10
step-security/actions/melange-build

step-security/actions/melange-build

A collection of reusable Github Actions workflows.

7/10
derjuulsn/todo-issue

derjuulsn/todo-issue

๐Ÿค– GitHub Action which creates Issues from comments in your code

4/10
notaryproject/notation-action/sign

notaryproject/notation-action/sign

GitHub Actions for signing and verifying artifacts with Notation

5/10
ministryofjustice/opg-github-actions/.github/actions/safe-strings

ministryofjustice/opg-github-actions/.github/actions/safe-strings

OPG shared GitHub composite actions for workflows.: Managed by opg-org-infra & Terraform

6/10
yonasbsd/rspack/.github/actions/artifact/download

yonasbsd/rspack/.github/actions/artifact/download

A fast Rust-based web bundler.

5/10
Maintained action available
xt0rted/dotnet-format-problem-matcher

xt0rted/dotnet-format-problem-matcher

A GitHub Action that registers a problem matcher for dotnet-format's report output

2/10
auguwu/clippy-action

auguwu/clippy-action

๐Ÿปโ€โ„๏ธ๐Ÿ“ฆ GitHub action to run Clippy, an up-to-date and modern version of actions-rs/clippy

5/10
Maintained action available
project-tick/project-tick/.github/actions/uvim/test_artifacts

project-tick/project-tick/.github/actions/uvim/test_artifacts

Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick

5/10
launchdarkly-labs/pr-downstream

launchdarkly-labs/pr-downstream

A Github action to create a pull request on a downstream Go repository when changes to a library repository are merged.

4/10
step-security/github-actions-pr-is-linked-to-work-item/__builder_checkout_dir__/.github/actions/privacy-check

step-security/github-actions-pr-is-linked-to-work-item/__builder_checkout_dir__/.github/actions/privacy-check

Check for linked Azure DevOps work item. Secure drop-in replacement for danhellem/github-actions-pr-is-linked-to-work-item.

10/10
vedantmgoyal2009/winget-releaser

vedantmgoyal2009/winget-releaser

Publish new releases of your application to the Windows Package Manager easily.

4/10
grafana/k6/_shared-workflows-dockerhub-login/actions/get-vault-secrets

grafana/k6/_shared-workflows-dockerhub-login/actions/get-vault-secrets

A modern load testing tool, using Go and JavaScript

6/10
launchdarkly/go-sdk-common/.github/actions/benchmarks

launchdarkly/go-sdk-common/.github/actions/benchmarks

Basic types for LaunchDarkly Go SDK components

4/10
katexochen/go-tidy-check

katexochen/go-tidy-check

GitHub action to check if your Go modules are tidy

2/10
adyen/adyen-platform-experience-web/.github/actions/publish-npm-logs

adyen/adyen-platform-experience-web/.github/actions/publish-npm-logs

Adyen Platform Experience components

7/10
nvidia/aicr/.github/actions/remove-issue-only-priority-labels

nvidia/aicr/.github/actions/remove-issue-only-priority-labels

Tooling for optimized, validated, and reproducible GPU-accelerated AI runtime in Kubernetes

7/10
aerospike/aerospike-expression-lang-java/.github/actions/publish-to-sonatype

aerospike/aerospike-expression-lang-java/.github/actions/publish-to-sonatype

Aerospike Expression DSL Java

7/10
coveo/search-ui/.github/actions/setup

coveo/search-ui/.github/actions/setup

Coveo Search UI framework

4/10
openai/codex/.github/actions/linux-code-sign

openai/codex/.github/actions/linux-code-sign

Lightweight coding agent that runs in your terminal

6/10