StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

jeffreytse/jekyll-deploy-action

jeffreytse/jekyll-deploy-action

🪂 A Github Action to deploy the Jekyll site conveniently for GitHub Pages.

5/10
n0-computer/actions-upload-release-asset

n0-computer/actions-upload-release-asset

Yet Another Upload Release Asset Action

2/10
deepcode-ai/spoon/.github/actions/setup-tests

deepcode-ai/spoon/.github/actions/setup-tests

Spoon is a metaprogramming library to analyze and transform Java source code. :spoon: is made with :heart:, :beers: and :sparkles:. It parses source files to build a well-designed AST with powerful analysis and transformation API.

4/10
Maintained action available
microsoft/security-devops-action

microsoft/security-devops-action

Microsoft Security DevOps for GitHub Actions.

6/10
bitwarden/gh-actions/report-deployment-status-to-slack

bitwarden/gh-actions/report-deployment-status-to-slack

Bitwarden-utilized GitHub Actions.

5/10
Maintained action available
NVIDIA/cccl/.github/actions/workflow-results

NVIDIA/cccl/.github/actions/workflow-results

CUDA Core Compute Libraries

7/10
marceloprado/has-changed-path

marceloprado/has-changed-path

GitHub Action that saves time and money in monorepo environments

2/10
EnricoMi/publish-unit-test-result-action/windows

EnricoMi/publish-unit-test-result-action/windows

GitHub Action to publish unit test results on GitHub

4/10
Maintained action available
xalvarez/prevent-file-change-action

xalvarez/prevent-file-change-action

Fail a pull request workflow if certain files are changed

5/10
Maintained action available
wtrocki/npm-publish-action-monorepo

wtrocki/npm-publish-action-monorepo

GitHub action to automatically publish packages to npm

2/10
actions-security-demo/pytorch/.github/actions/teardown-xpu

actions-security-demo/pytorch/.github/actions/teardown-xpu

Tensors and Dynamic neural networks in Python with strong GPU acceleration

2/10
grafana/azure-data-explorer-datasource/actions/commands

grafana/azure-data-explorer-datasource/actions/commands

Grafana datasource plugin for Microsoft Azure Data Explorer (formerly Azure Kusto)

6/10
flexion/uswds-elements/.github/actions/setup

flexion/uswds-elements/.github/actions/setup

USWDS Elements

3/10
Maintained action available
step-security/maven-settings-xml-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/maven-settings-xml-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Github Action to create maven settings (~/.m2/settings.xml). Secure drop-in replacement for whelk-io/maven-settings-xml-action.

10/10
OpenZeppelin/compact-tools/.github/actions/setup

OpenZeppelin/compact-tools/.github/actions/setup

A monorepo for collecting all the shared Compact tools

5/10
step-security/repository-dispatch/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/repository-dispatch/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A GitHub action to create a repository dispatch event. Secure drop-in replacement for peter-evans/repository-dispatch.

10/10
ericcornelissen/tool-versions-update-action/pr

ericcornelissen/tool-versions-update-action/pr

A GitHub Action to automatically update the tools in your .tool-versions file

7/10
pytorch/test-infra/test-infra/.github/actions/setup-nvidia

pytorch/test-infra/test-infra/.github/actions/setup-nvidia

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

3/10
Maintained action available
Git-Hub-Chris/PyTorch/.github/actions/get-workflow-job-id

Git-Hub-Chris/PyTorch/.github/actions/get-workflow-job-id

Python package.

2/10
chronograph-pe/create-pull-request

chronograph-pe/create-pull-request

A GitHub action to create a pull request for changes to your repository in the actions workspace

2/10