StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

philips-software/run-windows-docker-container-action

philips-software/run-windows-docker-container-action

Action to run windows containers

5/10
Maintained action available
MishaKav/jest-coverage-comment

MishaKav/jest-coverage-comment

Comments a pull request or commit with the jest code coverage badge, full report and tests summary

7/10
canonical/documentation-workflows/spellcheck

canonical/documentation-workflows/spellcheck

Reusable workflows for the documentation team

3/10
NVIDIA/jax-tvm-ffi/.github/actions/detect-skip-ci

NVIDIA/jax-tvm-ffi/.github/actions/detect-skip-ci

JAX support for tvm-ffi abi

5/10
deepcode-ai/codeql/.github/actions/fetch-codeql

deepcode-ai/codeql/.github/actions/fetch-codeql

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

2/10
modeseven-lfreleng-actions/python-sbom-action

modeseven-lfreleng-actions/python-sbom-action

Generates an SBOM for Python projects

4/10
Maintained action available
Dargon789/create-solana-dapp/.github/workflows/actions/install-dependencies

Dargon789/create-solana-dapp/.github/workflows/actions/install-dependencies

The fastest way to create Solana apps 🚀 Templates 👉 https://github.com/solana-foundation/templates

4/10
Maintained action available
step-security/get-user-teams-membership

step-security/get-user-teams-membership

GitHub Action to get a user teams membership in a given organization. Secure drop-in replacement for tspascoal/get-user-teams-membership.

10/10
Maintained by StepSecurity
pozil/auto-assign-issue

pozil/auto-assign-issue

GitHub Action that auto-assigns issues or PRs to one or more users/teams

2/10
yonasBSD/greptimedb/.github/actions/upload-artifacts

yonasBSD/greptimedb/.github/actions/upload-artifacts

An open-source, cloud-native, distributed time-series database with PromQL/SQL/Python supported.

5/10
Maintained action available
step-security/action-misspell/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/action-misspell/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Run misspell with reviewdog. Secure drop-in replacement for reviewdog/action-misspell.

10/10
step-security/kubepug-installer/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/kubepug-installer/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

kubepug-installer GitHub Action. Secure drop-in replacement for kubepug/kubepug-installer.

10/10
kiegroup/git-backporting

kiegroup/git-backporting

Git Backporting is a powerful automation utility designed to streamline the common Pull Request backporting. It provides a solution to automatically transfer merged changes from a branch (e.g., main) to one or more others (e.g., v1.x, stable).

5/10
Maintained action available
grafana/plugin-ci-workflows/actions/internal/plugins/publish/check-and-create-stub

grafana/plugin-ci-workflows/actions/internal/plugins/publish/check-and-create-stub

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

5/10
Maintained action available
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-content/uploads/2017/10/channel-4.png

step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/wp-content/uploads/2017/10/channel-4.png

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
imjasonh/gcp-metrics-action

imjasonh/gcp-metrics-action

Export GitHub Actions metrics and traces to GCP

3/10
step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/feed/index.html

step-security/ansible-galaxy-action/__BUILDER_CHECKOUT_DIR__/.github/actions/feed/index.html

This Action will import ansible roles on galaxy-ng. Secure drop-in replacement for ansible-actions/ansible-galaxy-action.

10/10
grafana/community-contributions/ephemeral

grafana/community-contributions/ephemeral

External contributor PR workflow testing sandbox

2/10
pytorch/captum/test-infra/.github/actions/pull-docker-image

pytorch/captum/test-infra/.github/actions/pull-docker-image

Model interpretability and understanding for PyTorch

3/10
Maintained action available
tue-robotics/tue-env/ci/commit-range

tue-robotics/tue-env/ci/commit-range

Package manager that can be used to install (ROS) dependencies

6/10