StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

neondatabase/neon/.github/actions/run-python-test-set

neondatabase/neon/.github/actions/run-python-test-set

Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, code-like database branching, and scale to zero.

3/10
optum/booster/.github/actions/call-rush

optum/booster/.github/actions/call-rush

Booster Cloud Framework

4/10
Maintained action available
step-security/auto-unapprove/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/auto-unapprove/__builder_checkout_dir__/.github/actions/secure-download-artifact

Secure drop-in replacement for RotemK1/auto-unapprove.

10/10
thomaseizinger/assign-pr-creator-action

thomaseizinger/assign-pr-creator-action

2/10
step-security/multi-labeler/__builder_checkout_dir__/.github/actions/privacy-check

step-security/multi-labeler/__builder_checkout_dir__/.github/actions/privacy-check

Multi labeler for title, body, comments, commit messages, branch, author or files with automated status checks. Secure drop-in replacement for fuxingloh/multi-labeler.

10/10
scalr/scalr-action

scalr/scalr-action

Scalr Github Action

5/10
Maintained action available
simonmarty/aws-secretsmanager-get-secrets/.github/actions/build

simonmarty/aws-secretsmanager-get-secrets/.github/actions/build

4/10
Maintained action available
rust-build/rust-build.action

rust-build/rust-build.action

Automate publishing Rust build artifacts for GitHub releases through GitHub Actions

3/10
istio/get-istioctl

istio/get-istioctl

3/10
ashishkurmi/changed-files

ashishkurmi/changed-files

3/10
cardinalby/git-tag-action

cardinalby/git-tag-action

GitHub action that adds a git tag to the current workflow commit

3/10
asymmetric-research/clusterfuzz-fuzzbot-builder/_next/image/assets/brand/step-security-brand-name.svg

asymmetric-research/clusterfuzz-fuzzbot-builder/_next/image/assets/brand/step-security-brand-name.svg

Build environment matching a FuzzBot running Ubuntu 22.04

2/10
ankane/setup-mysql

ankane/setup-mysql

The missing action for MySQL

3/10
openai/codex-action

openai/codex-action

6/10
firedancer-io/firedancer/.github/actions/submodule

firedancer-io/firedancer/.github/actions/submodule

Firedancer is Jump Crypto's Solana validator software.

6/10
negz/create-tag

negz/create-tag

Create a git tag!

3/10
tobked/label-when-approved-action

tobked/label-when-approved-action

2/10
octokit/request-action

octokit/request-action

A GitHub Action to send arbitrary requests to GitHub's REST API

9/10
pytorch/test-infra/.github/actions/clang-tidy-upload

pytorch/test-infra/.github/actions/clang-tidy-upload

This repository hosts code that supports the testing infrastructure for the PyTorch organization. For example, this repo hosts the logic to track disabled tests and slow tests, as well as our continuation integration jobs HUD/dashboard.

3/10
Maintained action available
aquaproj/registry-action/generate-registry

aquaproj/registry-action/generate-registry

GitHub Actions for aqua Registry

6/10