StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

openzeppelin/role-manager/.github/actions/oidc

openzeppelin/role-manager/.github/actions/oidc

Manage OpenZeppelin Access Control contracts across multiple blockchains โ€” visualize roles, permissions, and execute admin actions.

5/10
Maintained action available
advanced-security/spotbugs-findsecbugs-action

advanced-security/spotbugs-findsecbugs-action

Run SpotBugs with FindSecBugs on Java and other JVM languages (e.g. Scala), and upload the results to GitHub Code Scanning

6/10
dawidd6/action-send-mail/_next/static/chunks/14505-571a1c4f8eb21f35.js

dawidd6/action-send-mail/_next/static/chunks/14505-571a1c4f8eb21f35.js

:gear: A GitHub Action to send an email to multiple recipients

5/10
Maintained action available
intel/ai-containers/.github/scan

intel/ai-containers/.github/scan

This repository contains Dockerfiles, scripts, yaml files, Helm charts, etc. used to scale out AI containers with versions of TensorFlow and PyTorch that have been optimized for Intel platforms. Scaling is done with python, Docker, kubernetes, kubeflow, cnvrg.io, Helm, and other container orchestration frameworks for use in the cloud and on-premise

5/10
sonarsource/sonar-scanner-python/.actions/get-build-number

sonarsource/sonar-scanner-python/.actions/get-build-number

A wrapper around SonarScanner CLI, available on PyPI.

6/10
jerray/publish-docker-action

jerray/publish-docker-action

GitHub Action used to build, tag and publish docker image to your docker registry

3/10
pytorch/audio/test-infra/.github/actions/setup-nvidia

pytorch/audio/test-infra/.github/actions/setup-nvidia

Data manipulation and transformation for audio signal processing, powered by PyTorch

2/10
apache/flink-connector-shared-utils/.github/workflows/ci.yml

apache/flink-connector-shared-utils/.github/workflows/ci.yml

Apache flink

5/10
caffeelake/airbyte/.github/actions/install-airbyte-ci

caffeelake/airbyte/.github/actions/install-airbyte-ci

The leading data integration platform for ETL / ELT data pipelines from APIs, databases & files to data warehouses, data lakes & data lakehouses. Both self-hosted and Cloud-hosted.

0/10
crazy-max/.github/.github/actions/gotest-annotations

crazy-max/.github/.github/actions/gotest-annotations

4/10
Maintained action available
launchdarkly/dotnet-logging/.github/actions/release-build

launchdarkly/dotnet-logging/.github/actions/release-build

Logging abstraction used by LaunchDarkly .NET-based libraries

4/10
hoprnet/hopr-workflows/actions/multi-arch-manifest

hoprnet/hopr-workflows/actions/multi-arch-manifest

GitHub workflows helping HOPR automate tasks via actions

6/10
numtide/clean-git-action

numtide/clean-git-action

Leave no build artifacts behind

3/10
amadevus/pwsh-script

amadevus/pwsh-script

GitHub Action to run PowerShell scripts in a rich, prepared scope - inspired by actions/github-script.

3/10
step-security/read-yaml

step-security/read-yaml

A GitHub Action to read yaml files. Secure drop-in replacement for jbutcher5/read-yaml.

10/10
Maintained by StepSecurity
kong/kong-license

kong/kong-license

Kong Inc internal script to manage your local test license

2/10
rapidsai/shared-actions/telemetry-dispatch-summarize

rapidsai/shared-actions/telemetry-dispatch-summarize

6/10
yonasbsd/prql/.github/actions/build-python

yonasbsd/prql/.github/actions/build-python

PRQL is a modern language for transforming data โ€” a simple, powerful, pipelined SQL replacement

3/10
Maintained action available
step-security/gha-repo-manager/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/gha-repo-manager/__builder_checkout_dir__/.github/actions/secure-download-artifact

Manage your Github repo(s) settings and secrets using Github Actions and a yaml file. Secure drop-in replacement for andrewthetechie/gha-repo-manager.

10/10
jfagoagas/grafana/actions/pr-checks

jfagoagas/grafana/actions/pr-checks

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

2/10