StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

animmouse/setup-ffmpeg

animmouse/setup-ffmpeg

Setup/Install FFmpeg for GitHub Actions

4/10
Maintained action available
credebl/mediator-agent/.github/actions/publish-docker-image

credebl/mediator-agent/.github/actions/publish-docker-image

An easy to set-up Aries and DIDComm v1 mediator built on Aries Framework JavaScript.

3/10
cross-platform-actions/action

cross-platform-actions/action

Cross-platform GitHub action

6/10
jayanta525/github-pages-directory-listing

jayanta525/github-pages-directory-listing

Directory listing for Github Pages

3/10
project-chip/connectedhomeip/.github/actions/notify-slack-failure

project-chip/connectedhomeip/.github/actions/notify-slack-failure

Matter (formerly Project CHIP) creates more connections between more objects, simplifying development for manufacturers and increasing compatibility for consumers, guided by the Connectivity Standards Alliance.

6/10
launchdarkly/go-server-sdk-redis-redigo/.github/actions/unit-tests

launchdarkly/go-server-sdk-redis-redigo/.github/actions/unit-tests

Redis integration for the LaunchDarkly SDK for Server-side Go (with Redigo client)

6/10
caffeelake/cilium/.github/actions/lvh-kind

caffeelake/cilium/.github/actions/lvh-kind

eBPF-based Networking, Security, and Observability

3/10
politicalsphere/ci/.github/actions/ps-task/jscpd

politicalsphere/ci/.github/actions/ps-task/jscpd

CI/CD pipelines and GitHub Actions for Political Sphere

3/10
Maintained action available
pytooling/actions/with-post-step

pytooling/actions/with-post-step

Reusable steps and workflows for GitHub Actions

2/10
Maintained action available
prewk/s3-cp-action

prewk/s3-cp-action

GitHub Action for S3 cp

3/10
step-security/action-semantic-pull-request/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/action-semantic-pull-request/__builder_checkout_dir__/.github/actions/secure-download-artifact

GitHub Action that ensures that your PR title matches the Conventional Commits spec. Secure drop-in replacement for amannn/action-semantic-pull-request.

10/10
nvidia-rtx/godot/.github/actions/upload-artifact

nvidia-rtx/godot/.github/actions/upload-artifact

NVIDIA fork of Godot Engine โ€“ Multi-platform 2D and 3D game engine

2/10
oxidize-rb/actions/test-gem-build

oxidize-rb/actions/test-gem-build

4/10
step-security/snyk-actions/docker

step-security/snyk-actions/docker

A set of GitHub actions for checking your projects for vulnerabilities. Secure drop-in replacement for snyk/actions.

10/10
Maintained by StepSecurity
siemens/kas/.github/actions/perform-tests

siemens/kas/.github/actions/perform-tests

Setup tool for bitbake based projects

7/10
ministryofjustice/hmpps-github-shared-actions/.github/actions/security_npm_outdated

ministryofjustice/hmpps-github-shared-actions/.github/actions/security_npm_outdated

Shared actions for Github workflows to use - PUT NO WORKFLOWS IN HERE! (bootstrapped 2026-03-30)

4/10
yonasbsd/melange/melange-src/.github/actions/setup-bubblewrap

yonasbsd/melange/melange-src/.github/actions/setup-bubblewrap

build APKs from source code

3/10
Maintained action available
bpmn-io/actions/setup

bpmn-io/actions/setup

The github actions used by the bpmn-io team

2/10
coder/setup-imdisk-action

coder/setup-imdisk-action

4/10
pndurette/gh-actions-auto-docs

pndurette/gh-actions-auto-docs

A GitHub Action for generating GitHub Action Markdown documentation

4/10