StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

riskledger/update-pr-description

riskledger/update-pr-description

Easily update a Pull Requests description

3/10
step-security/actions-oidc-debugger/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/actions-oidc-debugger/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

An Action for printing OIDC claims in GitHub Actions. Secure drop-in replacement for github/actions-oidc-debugger.

10/10
jofthev/pytorch/.github/actions/setup-linux

jofthev/pytorch/.github/actions/setup-linux

Tensors and Dynamic neural networks in Python with strong GPU acceleration

2/10
grafana/plugin-ci-workflows/actions/internal/plugins/trufflehog

grafana/plugin-ci-workflows/actions/internal/plugins/trufflehog

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

5/10
Maintained action available
chronograph-pe/harden-runner

chronograph-pe/harden-runner

Runtime Security for GitHub-Hosted and ARC Runners

3/10
OpenZeppelin/ui-builder/../__TOOL_ACTION_DIR__

OpenZeppelin/ui-builder/../__TOOL_ACTION_DIR__

UI Builder is an open-source blockchain development tool that helps developers and non-developers create user-friendly interfaces for smart contract interaction by providing a chain-agnostic form builder that generates standalone "mini apps" without requiring backend infrastructure.

5/10
Maintained action available
step-security/git-tag-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/git-tag-action/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

[GitHub Action] Get ${version} from package.json and git tag ${version} for the repository. Secure drop-in replacement for pkgdeps/git-tag-action.

10/10
joncloud/makensis-action

joncloud/makensis-action

Nullsoft scriptable install system GitHub action

3/10
grafana/grafana-aws-sdk-react/actions/commands

grafana/grafana-aws-sdk-react/actions/commands

6/10
veracode/veracode-pipeline-scan-results-to-sarif

veracode/veracode-pipeline-scan-results-to-sarif

4/10
fish-actions/syntax-check

fish-actions/syntax-check

Run syntax checking on all fish files in your repository

3/10
contentful/github-auto-merge

contentful/github-auto-merge

A github custom action to fetch a Github token from vault, approve the PR and enable auto merge for the PR so that once it passes all the PR checks it will be merged.

4/10
github/combine-prs

github/combine-prs

GitHub Action to combine multiple PRs into a single one

5/10
pytorch/ignite/test-infra/.github/actions/pull-docker-image

pytorch/ignite/test-infra/.github/actions/pull-docker-image

High-level library to help with training and evaluating neural networks in PyTorch flexibly and transparently.

3/10
Maintained action available
coveooss/gotemplate/.github/actions/hugo

coveooss/gotemplate/.github/actions/hugo

Apply go template over files ending with .template in the current directory

5/10
nodejs/node-pr-labeler

nodejs/node-pr-labeler

GitHub Action used by the nodejs/node repository to automatically label pull requests

3/10
fastai/workflows/nbdev-ci

fastai/workflows/nbdev-ci

Composite Actions workflows for use in fastai projects

2/10
jossef/action-latest-release-info

jossef/action-latest-release-info

Github Action to Get Latest Release Info

3/10
atlassian/gajira-create

atlassian/gajira-create

2/10
nguyenvanuyn96/str-find-and-replace-action

nguyenvanuyn96/str-find-and-replace-action

3/10