StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

launchdarkly/openfeature-node-server/.github/actions/publish-docs

launchdarkly/openfeature-node-server/.github/actions/publish-docs

An open feature provider for the LaunchDarkly node SDK.

5/10
speakeasy-api/packagist-update

speakeasy-api/packagist-update

A Github Action to update packagist packages

2/10
deepcode-ai/spoon/.github/actions/setup-tests

deepcode-ai/spoon/.github/actions/setup-tests

Spoon is a metaprogramming library to analyze and transform Java source code. :spoon: is made with :heart:, :beers: and :sparkles:. It parses source files to build a well-designed AST with powerful analysis and transformation API.

4/10
Maintained action available
caffeelake/ladybird/.github/actions/cache-save

caffeelake/ladybird/.github/actions/cache-save

Truly independent web browser

5/10
microsoft/security-devops-action

microsoft/security-devops-action

Microsoft Security DevOps for GitHub Actions.

8/10
jonathancombs782/next.js/.github/actions/next-integration-stat

jonathancombs782/next.js/.github/actions/next-integration-stat

The React Framework

2/10
bitwarden/gh-actions/report-deployment-status-to-slack

bitwarden/gh-actions/report-deployment-status-to-slack

Bitwarden-utilized GitHub Actions.

6/10
veracode/veracode-sca

veracode/veracode-sca

Veracode Software Composition Analysis Scanning

6/10
lgtm-hq/lgtm-ci/.github/actions/image

lgtm-hq/lgtm-ci/.github/actions/image

Reusable CI/CD components: composite actions, workflows, and shell libraries for GitHub Actions

8/10
elastic/elastic-otel-python/.github/actions/fill

elastic/elastic-otel-python/.github/actions/fill

8/10
marceloprado/has-changed-path

marceloprado/has-changed-path

GitHub Action that saves time and money in monorepo environments

2/10
bump-sh/github-action

bump-sh/github-action

GitHub action to deploy your API documentation on Bump

5/10
Maintained action available
xalvarez/prevent-file-change-action

xalvarez/prevent-file-change-action

Fail a pull request workflow if certain files are changed

5/10
Maintained action available
softprops/diffset

softprops/diffset

A GitHub Action for producing lists of files that changed between branches

5/10
Maintained action available
kin0992/dev-toolkit/.github/actions/setup

kin0992/dev-toolkit/.github/actions/setup

Platform Engineering toolkit: reusable GitHub Actions, AI Skills, and shared TypeScript configs.

5/10
tonycknight/pkgchk-action

tonycknight/pkgchk-action

A Github action to run .net package dependency checks & display results in a Github pull request.

5/10
step-security/semver-data-action/__builder_checkout_dir__/.github/actions/privacy-check

step-security/semver-data-action/__builder_checkout_dir__/.github/actions/privacy-check

GitHub Action that can validate and parse data from SemVer version numbers. Secure drop-in replacement for peter-murray/semver-data-action.

10/10
step-security/docker-build-push-action/__builder_checkout_dir__/.github/actions/privacy-check

step-security/docker-build-push-action/__builder_checkout_dir__/.github/actions/privacy-check

GitHub Action to build and push Docker images with Buildx. Secure drop-in replacement for docker/build-push-action.

8/10
wtrocki/npm-publish-action-monorepo

wtrocki/npm-publish-action-monorepo

GitHub action to automatically publish packages to npm

2/10
actions-security-demo/pytorch/.github/actions/teardown-xpu

actions-security-demo/pytorch/.github/actions/teardown-xpu

Tensors and Dynamic neural networks in Python with strong GPU acceleration

2/10