StepSecurity Logo
Community Tier

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

nefrob/pr-description

nefrob/pr-description

GitHub Action to update pull request descriptions.

1/10
port-labs/port-github-action

port-labs/port-github-action

7/10
open-edge-platform/orch-utils/.github/actions/setup-asdf

open-edge-platform/orch-utils/.github/actions/setup-asdf

Utilities of Edge Manageability Framework Orchestrator

7/10
credfeto/action-case-checker

credfeto/action-case-checker

Git workflow action for checking to see if there are any files or directories in the repo which differ only by case.

7/10
apache/skywalking-eyes/dependency

apache/skywalking-eyes/dependency

A full-featured license tool to check and fix license headers and resolve dependencies' licenses.

7/10
alexellis/arkade-get

alexellis/arkade-get

Get all the CLIs you need from arkade for a GitHub Action

3/10
azure/aks-set-context

azure/aks-set-context

GitHub Action for setting context (retrieving Kubeconfig) before interacting with Kubernetes cluster

8/10
jef/conventional-commits-pr-action

jef/conventional-commits-pr-action

🧐 Lints pull request titles for conventional commits

3/10
bytemare/actions/sonar-scan

bytemare/actions/sonar-scan

A collection of hardened reusable Github Actions and Workflows.

7/10
grafana/grafana/.github/actions/setup-enterprise

grafana/grafana/.github/actions/setup-enterprise

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

6/10
hynek/setup-cached-uv

hynek/setup-cached-uv

Use uv in GitHub Actions by adding one line to the workflow.

6/10
clj-holmes/clj-holmes-action

clj-holmes/clj-holmes-action

Action to execute clj-holmes in Clojure/Clojurescript projects.

2/10
step-security/skip-duplicate-actions

step-security/skip-duplicate-actions

Save time and cost when using GitHub Actions. Secure drop-in replacement for fkirc/skip-duplicate-actions.

10/10
Maintained by StepSecurity
cloudposse-github-actions/get-pr

cloudposse-github-actions/get-pr

Get the PR info by ID or associated commit

4/10
nick-invision/assert-action

nick-invision/assert-action

Performs different types of assertions for use in an Action workflow. This is intended to be used to validate outputs and helpful in writing integration tests of Actions.

2/10
Codium-ai/pr-agent

Codium-ai/pr-agent

🚀 PR-Agent: An AI-Powered 🤖 Tool for Automated Pull Request Analysis, Feedback, Suggestions and More! 💻🔍

9/10
py-actions/flake8

py-actions/flake8

A GitHub Action that installs and executes flake8 Python source linting during continuous integration testing. Supports flake8 configuration and plugin installation in the GitHub Action settings.

4/10
dessant/lock-threads

dessant/lock-threads

GitHub Action that locks closed issues, pull requests and discussions after a period of inactivity

3/10
step-security/action-read-yaml

step-security/action-read-yaml

Custom github action used to read yaml files, supporting multiple keys and variable replacements. Secure drop-in replacement for pietrobolcato/action-read-yaml.

10/10
Maintained by StepSecurity
cloudposse-github-actions/readme

cloudposse-github-actions/readme

Regenerate README & Banners

7/10