StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

andyl-technologies/github-actions/rust-cache

andyl-technologies/github-actions/rust-cache

Common actions for ANDYL's Rust-related configurations

3/10
pytorch/vision/test-infra/.github/actions/pull-docker-image

pytorch/vision/test-infra/.github/actions/pull-docker-image

Datasets, Transforms and Models specific to Computer Vision

4/10
Maintained action available
ethanis/nitpicker

ethanis/nitpicker

Action to add comments automatically to pull requests based on the files changed

2/10
step-security/action-markdownlint/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/action-markdownlint/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Run markdownlint with reviewdog. Secure drop-in replacement for reviewdog/action-markdownlint.

10/10
octodemo-resources/github-commit-status

octodemo-resources/github-commit-status

2/10
ivuorinen/actions/.github/actions/setup-test-environment

ivuorinen/actions/.github/actions/setup-test-environment

ivuorinen's shared actions

7/10
tj-actions/eslint-changed-files

tj-actions/eslint-changed-files

:octocat: Github action to run ESLint on changed pull request files with support for reporting errors via Github checks.

2/10
ajinabraham/njsscan-action

ajinabraham/njsscan-action

nodejsscan Github Action

5/10
yyx990803/release-tag

yyx990803/release-tag

GitHub action for auto creating a release on tag push

0/10
datadrivers/terragrunt-action

datadrivers/terragrunt-action

Opinionated Workflow to run Terraform or Terragrunt

4/10
Maintained action available
grafana/shared-workflows/actions/azure-trusted-signing

grafana/shared-workflows/actions/azure-trusted-signing

A public-facing, centralized place to store reusable workflows used by Grafana Labs.

6/10
aerospike/aerospike-client-java-reactive/.github/actions/publish-to-github

aerospike/aerospike-client-java-reactive/.github/actions/publish-to-github

Reactive programming interfaces for the Aerospike Java client

5/10
Maintained action available
alwaysmeticulous/report-diffs-action/cloud-compute

alwaysmeticulous/report-diffs-action/cloud-compute

Run Meticulous tests

3/10
Maintained action available
coveooss/terraform/.github/actions/go-version

coveooss/terraform/.github/actions/go-version

Terraform enables you to safely and predictably create, change, and improve infrastructure. It is a source-available tool that codifies APIs into declarative configuration files that can be shared amongst team members, treated as code, edited, reviewed, and versioned.

0/10
step-security/setup-gcloud/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/setup-gcloud/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

A GitHub Action for installing and configuring the gcloud CLI. Secure drop-in replacement for google-github-actions/setup-gcloud.

10/10
probablyup/wait-for-netlify-action

probablyup/wait-for-netlify-action

A GitHub action that will wait until a Netlify deploy is completed before continuing on

0/10
fastify/github-action-merge-dependabot

fastify/github-action-merge-dependabot

This action automatically approves and merges dependabot PRs

7/10
step-security/action-setup/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/action-setup/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Install pnpm package manager. Secure drop-in replacement for pnpm/action-setup.

10/10
standardrb/standard-ruby-action

standardrb/standard-ruby-action

A GitHub Action to run Standard Ruby against your code.

7/10
NVIDIA/Model-Optimizer/.github/actions/ubuntu-setup

NVIDIA/Model-Optimizer/.github/actions/ubuntu-setup

A unified library of SOTA model optimization techniques like quantization, pruning, distillation, speculative decoding, etc. It compresses deep learning models for downstream deployment frameworks like TensorRT-LLM, TensorRT, vLLM, etc. to optimize inference speed.

7/10