StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

humbletim/install-vulkan-sdk

humbletim/install-vulkan-sdk

Automatically downloads and installs prebuilt Vulkan SDK releases.

4/10
ledgerhq/ledger-live/tools/actions/composites/setup-test-desktop

ledgerhq/ledger-live/tools/actions/composites/setup-test-desktop

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
Maintained action available
coursgranja91-hash/erk/.github/actions/setup-prettier

coursgranja91-hash/erk/.github/actions/setup-prettier

erk is a tool for the orchestration and management of plan-oriented agentic engineering.

3/10
raycast/github-actions/git-post-store-urls-to-pr

raycast/github-actions/git-post-store-urls-to-pr

3/10
Maintained action available
pkgdeps/git-tag-action

pkgdeps/git-tag-action

[GitHub Action] Get ${version} from package.json and git tag ${version} for the repository.

3/10
launchdarkly/android-client-sdk/.github/actions/ci

launchdarkly/android-client-sdk/.github/actions/ci

LaunchDarkly Client-side SDK for Android

5/10
Maintained action available
step-security/snyk-actions/python-3.12

step-security/snyk-actions/python-3.12

A set of GitHub actions for checking your projects for vulnerabilities. Secure drop-in replacement for snyk/actions.

10/10
Maintained by StepSecurity
projectdiscovery/subfinder

projectdiscovery/subfinder

Fast passive subdomain enumeration tool.

6/10
mbrobbel/rustfmt-check

mbrobbel/rustfmt-check

GitHub Action to format Rust code using rustfmt

6/10
launchdarkly/swift-eventsource/.github/actions/build-ios

launchdarkly/swift-eventsource/.github/actions/build-ios

Server-sent events (SSE) client implementation in Swift for iOS, macOS, tvOS, and watchOS

5/10
jfagoagas/grafana/actions/backport

jfagoagas/grafana/actions/backport

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

2/10
ask-bonk/ask-bonk/github

ask-bonk/ask-bonk/github

Bonk is a code & docs agent that can build, review and triage for you, built on Cloudflare Workers & OpenCode.

7/10
nvidia/dsx-github-actions/.github/actions/go-test

nvidia/dsx-github-actions/.github/actions/go-test

Github Action infrastructure for DSX

8/10
viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/hadolint-hadolint-action

viasat::Git-Viasat-Com-PoC::seceng-vionix-stepsecurity-poc-test/github/hadolint-hadolint-action

Mirror from https://github.com/hadolint/hadolint-action

5/10
step-security/setup-gcloud

step-security/setup-gcloud

A GitHub Action for installing and configuring the gcloud CLI. Secure drop-in replacement for google-github-actions/setup-gcloud.

10/10
Maintained by StepSecurity
adanalvarez/traildiscover

adanalvarez/traildiscover

An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications

2/10
equinor/fusion-project-portal/.github/actions/client-test

equinor/fusion-project-portal/.github/actions/client-test

Project Portal powered By Fusion

4/10
step-security/protobuf-ci/bazel-docker

step-security/protobuf-ci/bazel-docker

A shared repository for Protobuf CI actions. Secure drop-in replacement for protocolbuffers/protobuf-ci.

10/10
Maintained by StepSecurity
boshen/setup-ohos-sdk

boshen/setup-ohos-sdk

Github action to setup the OpenHarmony SDK

4/10
fsouza/fake-gcs-action

fsouza/fake-gcs-action

GitHub Action for running fake-gcs-server in a dettached container in background.

4/10