StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

dkhunt27/action-nx-code-coverage

dkhunt27/action-nx-code-coverage

Github Action for Processing Code Coverage for an NX Monorepo

2/10
nvidia/cccl/.github/actions/workflow-run-job-linux

nvidia/cccl/.github/actions/workflow-run-job-linux

CUDA Core Compute Libraries

7/10
intel/ai-containers/workflows/charts

intel/ai-containers/workflows/charts

This repository contains Dockerfiles, scripts, yaml files, Helm charts, etc. used to scale out AI containers with versions of TensorFlow and PyTorch that have been optimized for Intel platforms. Scaling is done with python, Docker, kubernetes, kubeflow, cnvrg.io, Helm, and other container orchestration frameworks for use in the cloud and on-premise

7/10
ministryofjustice/devsecops-actions/sca/renovate

ministryofjustice/devsecops-actions/sca/renovate

A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.

8/10
step-security/prisma-cloud-scan

step-security/prisma-cloud-scan

GitHub action to scan container images with Palo Alto Networks' Prisma Cloud. Secure drop-in replacement for PaloAltoNetworks/prisma-cloud-scan.

10/10
Maintained by StepSecurity
yonasbsd/oxc/.github/actions/check-version

yonasbsd/oxc/.github/actions/check-version

โš“ A collection of JavaScript tools written in Rust.

5/10
Maintained action available
softprops/action-gh-release/_next/static/chunks/31497-9433930b8b260696.js

softprops/action-gh-release/_next/static/chunks/31497-9433930b8b260696.js

๐Ÿ“ฆ :octocat: GitHub Action for creating GitHub Releases

5/10
Maintained action available
suzuki-shunsuke/tfaction/get-target-config

suzuki-shunsuke/tfaction/get-target-config

Framework for Monorepo to build high level Terraform Workflows by GitHub Actions

4/10
Maintained action available
alexellis/setup-arkade

alexellis/setup-arkade

Your favourite developer CLIs for GitHub Actions

3/10
step-security/vitest-coverage-report-action

step-security/vitest-coverage-report-action

A GitHub Action to report vitest test coverage results. Secure drop-in replacement for davelosert/vitest-coverage-report-action.

9/10
Maintained by StepSecurity
googleapis/code-suggester

googleapis/code-suggester

6/10
deef0000dragon1/json-edit-action/

deef0000dragon1/json-edit-action/

Github Action to make a change to a JSON file

0/10
ministryofjustice/hmpps-github-shared-actions/.github/actions/database_schema_report

ministryofjustice/hmpps-github-shared-actions/.github/actions/database_schema_report

Shared actions for Github workflows to use PUT NO WORKFLOWS IN HERE! (except security scanning ones) (bootstrapped 2026-03-30)

4/10
scribemd/slack-templates

scribemd/slack-templates

Send Informative, Concise Slack Notifications With Minimal Effort

2/10
advanced-security/dart-analyzer-sarif

advanced-security/dart-analyzer-sarif

Convert `dart analyze` CLI output into SARIF

6/10
brittanyshelton23/docs/.github/actions/node-npm-setup

brittanyshelton23/docs/.github/actions/node-npm-setup

The open-source repo for docs.github.com

2/10
Maintained action available
vers-one/dotnet-project-version-updater

vers-one/dotnet-project-version-updater

A GitHub action to update or bump project versions. Supports .csproj, .props, .nuspec, and many other .NET file types.

2/10
emqx/upload-assets

emqx/upload-assets

GitHub Action to upload multiple assets to a release

2/10
cloudsmith-io/cloudsmith-cli-action

cloudsmith-io/cloudsmith-cli-action

This GitHub repository contains a GitHub Action for installing and pre-authenticating the Cloudsmith CLI using OpenID Connect (OIDC). It simplifies CI/CD workflows by automating the setup and authentication process, enhancing security, and ensuring seamless integration with Cloudsmith's universal package management solution.

3/10
checkmarx/kics-action

checkmarx/kics-action

GitHub actions of KICS scan - Keeping Infrastructure as Code Secure

5/10