StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

jaywcjlove/markdown-to-html-cli

jaywcjlove/markdown-to-html-cli

Command line tool that converts markdown to HTML.

4/10
hashicorp/setup-hc-releases

hashicorp/setup-hc-releases

6/10
ministryofjustice/laa-data-claims-reporting-service/.github/deploy

ministryofjustice/laa-data-claims-reporting-service/.github/deploy

Java service to generate claims reports

8/10
pytorch/pytorch/.github/actions/setup-rocm

pytorch/pytorch/.github/actions/setup-rocm

Tensors and Dynamic neural networks in Python with strong GPU acceleration

4/10
Maintained action available
neondatabase/dev-actions/release-pr

neondatabase/dev-actions/release-pr

3/10
step-security/release-drafter/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/release-drafter/__builder_checkout_dir__/.github/actions/secure-download-artifact

Drafts your next release notes as pull requests are merged into master. Secure drop-in replacement for release-drafter/release-drafter.

10/10
grafana/shared-workflows/_shared-workflows-trigger-argo-workflow/actions/get-vault-secrets

grafana/shared-workflows/_shared-workflows-trigger-argo-workflow/actions/get-vault-secrets

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

6/10
docker/bake-action/subaction/list-targets/it7ms0%5c%5cqqq

docker/bake-action/subaction/list-targets/it7ms0%5c%5cqqq

GitHub Action to use Docker Buildx Bake as a high-level build command

5/10
Maintained action available
launchdarkly/find-code-references-in-pull-request

launchdarkly/find-code-references-in-pull-request

Find Code Reference Flags in Pull Requests

4/10
checkmarx/chainalert-github-action

checkmarx/chainalert-github-action

scans popular packages and alerts in cases there is suspicion of an account takeover

4/10
step-security/dsanders11-project-actions/fill

step-security/dsanders11-project-actions/fill

A collection of actions for automating GitHub projects. Secure drop-in replacement for dsanders11/project-actions.

10/10
cbrgm/cleanup-stale-branches-action

cbrgm/cleanup-stale-branches-action

Use this Action to cleanup stale / abandoned branches in your GitHub repository

7/10
helmfile/helmfile-action

helmfile/helmfile-action

helmfile-action

5/10
Maintained action available
jonathancombs782/aspire/actions/locker

jonathancombs782/aspire/actions/locker

Aspire is the tool for code-first, extensible, observable dev and deploy.

3/10
xmake-io/github-action-setup-xmake

xmake-io/github-action-setup-xmake

Set up your GitHub Actions workflow with a specific version of xmake

5/10
grafana/plugin-ci-workflows/actions/internal/plugins/changelog

grafana/plugin-ci-workflows/actions/internal/plugins/changelog

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

6/10
icycodes/install-vulkan-sdk

icycodes/install-vulkan-sdk

Automatically downloads and installs prebuilt Vulkan SDK releases.

3/10
lgtm-hq/lgtm-ci/.github/actions/setup-node

lgtm-hq/lgtm-ci/.github/actions/setup-node

Reusable CI/CD components: composite actions, workflows, and shell libraries for GitHub Actions

8/10
homebrew/actions/create-or-update-issue

homebrew/actions/create-or-update-issue

๐Ÿš€ Homebrew's GitHub Actions

7/10
sonarsource/sonarlint-eclipse/gh-action_release/main

sonarsource/sonarlint-eclipse/gh-action_release/main

SonarQube plugin for Eclipse providing code quality and security feedback directly in the IDE

6/10