StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

jurplel/install-qt-action

jurplel/install-qt-action

Install Qt on your Github Actions workflows with just one simple action

3/10
mattmoor/checkrun-action

mattmoor/checkrun-action

3/10
austenstone/security-export

austenstone/security-export

GitHub Action to export GitHub security alerts

3/10
approved-3rd-party-actions/publish-unit-test-result-action

approved-3rd-party-actions/publish-unit-test-result-action

GitHub Action to publish unit test results on GitHub

2/10
grafana/plugin-actions/bundle-schema-types

grafana/plugin-actions/bundle-schema-types

6/10
apple/swift-nio/.github/actions/pull_request_semver_label_checker

apple/swift-nio/.github/actions/pull_request_semver_label_checker

Event-driven network application framework for high performance protocol servers & clients, non-blocking.

7/10
step-security/ghaction-github-runtime/__builder_checkout_dir__/.github/actions/privacy-check

step-security/ghaction-github-runtime/__builder_checkout_dir__/.github/actions/privacy-check

GitHub Action to expose GitHub runtime to the workflow. Secure drop-in replacement for crazy-max/ghaction-github-runtime.

8/10
install-pinned/build

install-pinned/build

Securely install the latest build release from PyPI.

3/10
step-security/cysharp-actions/.github/actions/unity-builder

step-security/cysharp-actions/.github/actions/unity-builder

Secure drop-in replacement for Cysharp/Actions.

10/10
Maintained by StepSecurity
clearlyip/code-coverage-report-action

clearlyip/code-coverage-report-action

Provides Code Coverage reports in Github Actions

5/10
Maintained action available
envoyproxy/toolshed/gh-actions/github/artifact/cache/id

envoyproxy/toolshed/gh-actions/github/artifact/cache/id

6/10
spotdemo4/go-template/.github/actions/init

spotdemo4/go-template/.github/actions/init

template for go

6/10
actions-security-demo/script-injection/ephemeral

actions-security-demo/script-injection/ephemeral

2/10
gradle/wrapper-validation-action

gradle/wrapper-validation-action

Gradle Wrapper Validation Action

7/10
nvidia-rtx/godot/.github/actions/fetch-gh-release-asset

nvidia-rtx/godot/.github/actions/fetch-gh-release-asset

NVIDIA fork of Godot Engine โ€“ Multi-platform 2D and 3D game engine

2/10
step-security/pull-request-comment-trigger/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/pull-request-comment-trigger/__builder_checkout_dir__/.github/actions/secure-download-artifact

A github action for detecting a "trigger" in a pull request description or comment. Secure drop-in replacement for Khan/pull-request-comment-trigger.

9/10
ansible/ansible-publish-action

ansible/ansible-publish-action

Publish Ansible collection to galaxy.ansible.com

6/10
elide-dev/labs-openjdk/.github/actions/get-bootjdk

elide-dev/labs-openjdk/.github/actions/get-bootjdk

JDK fork for building GraalVM CE.

5/10
pytorch/torchchat/test-infra/.github/actions/teardown-linux

pytorch/torchchat/test-infra/.github/actions/teardown-linux

Run PyTorch LLMs locally on servers, desktop and mobile

3/10
epam/ai-dial-ci/actions/java_prepare

epam/ai-dial-ci/actions/java_prepare

Continuous Integration instrumentation for AI DIAL components

8/10