StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

skills/action-text-variables

skills/action-text-variables

Load a text file and replace mustache style variables. Returns modified text as an output for use in other actions.

6/10
grafana/shared-workflows/actions/cleanup-branches

grafana/shared-workflows/actions/cleanup-branches

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

6/10
Entle/action-pagerduty-alert

Entle/action-pagerduty-alert

2/10
chronograph-pe/automerge-action

chronograph-pe/automerge-action

GitHub action to automatically merge pull requests that are ready

2/10
checkmarx/kics

checkmarx/kics

Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

6/10
anysphere/alls-green

anysphere/alls-green

A check for whether the dependency jobs are all green.

3/10
egibs/actions/matrix-extra-inputs

egibs/actions/matrix-extra-inputs

A collection of reusable Github Actions workflows.

3/10
nyrkio/change-detection

nyrkio/change-detection

GitHub Action for Continuous Benchmarking and Nyrkiö Change Detection

3/10
Maintained action available
HL7/bidi-checker-action

HL7/bidi-checker-action

A GitHub action that checks for bi-directional unicode characters.

2/10
step-security/delete-untagged-ghcr-action

step-security/delete-untagged-ghcr-action

Action for delete containers from Github container registry. Secure drop-in replacement for Chizkiyahu/delete-untagged-ghcr-action.

10/10
Maintained by StepSecurity
ZedThree/clang-tidy-review/post

ZedThree/clang-tidy-review/post

Create a pull request review based on clang-tidy warnings

5/10
Maintained action available
stcarolas/setup-maven

stcarolas/setup-maven

Set up your GitHub Actions workflow with a specific version of Apache Maven

3/10
ministryofjustice/cloud-platform-environments/cmd/push-terraform-module-version

ministryofjustice/cloud-platform-environments/cmd/push-terraform-module-version

Environment configuration for the Cloud Platform

6/10
danger/danger-js

danger/danger-js

⚠️ Stop saying "you forgot to …" in code review

4/10
Maintained action available
bit-tasks/dependency-update

bit-tasks/dependency-update

Bit component updates lookup task for CI/CD

0/10
step-security/push-md-to-notion

step-security/push-md-to-notion

Push Markdown to Notion. Secure drop-in replacement for JoshStern/push-md-to-notion.

10/10
Maintained by StepSecurity
OPENAI/codex/.github/actions/codex

OPENAI/codex/.github/actions/codex

Lightweight coding agent that runs in your terminal

4/10
Maintained action available
Cysharp/Actions/.github/actions/download-artifact

Cysharp/Actions/.github/actions/download-artifact

3/10
Maintained action available
zendesk/action-create-release

zendesk/action-create-release

Github action to create releases

3/10
johnwason/vcpkg-action

johnwason/vcpkg-action

Simple vcpkg action to build and cache packages

4/10