StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/fetch-gh-release-asset/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

step-security/fetch-gh-release-asset/__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check

Github Action to download an asset from a Github release. Secure drop-in replacement for dsaltares/fetch-gh-release-asset.

10/10
step-security/paths-filter/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/paths-filter/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Conditionally run actions based on files modified by PR, feature branch or pushed commits. Secure drop-in replacement for dorny/paths-filter.

10/10
distributhor/workflow-webhook

distributhor/workflow-webhook

A Github workflow action to call a webhook with payload data from the event. Support for JSON or URL encoded endpoints.

5/10
seanmiddleditch/gha-setup-vsdevenv

seanmiddleditch/gha-setup-vsdevenv

GitHub Action to setup the VS dev environment for the job

6/10
google/osv-scanner-action/osv-scanner-action

google/osv-scanner-action/osv-scanner-action

8/10
aerospike-community/spring-data-aerospike-starters/.github/actions/publish-to-sonatype

aerospike-community/spring-data-aerospike-starters/.github/actions/publish-to-sonatype

spring-data-aerospike-starters

3/10
Maintained action available
replayio/action-upload

replayio/action-upload

GitHub Action to upload recordings to Replay.io

3/10
braintrustdata/eval-action

braintrustdata/eval-action

3/10
bahmutov/should-run-github-action

bahmutov/should-run-github-action

A reusable GitHub action to determine if the user clicked a checkbox inn the PR text

0/10
yonasBSD/chezmoi/.github/actions/setup-go

yonasBSD/chezmoi/.github/actions/setup-go

Manage your dotfiles across multiple diverse machines, securely.

7/10
step-security/quarto-actions/setup

step-security/quarto-actions/setup

Secure drop-in replacement for quarto-dev/quarto-actions.

9/10
Maintained by StepSecurity
mevisoft/docker-laravel/.github/actions/build-and-push-docker

mevisoft/docker-laravel/.github/actions/build-and-push-docker

2/10
pytorch/ao/test-infra/.github/actions/setup-miniconda

pytorch/ao/test-infra/.github/actions/setup-miniconda

PyTorch native quantization and sparsity for training and inference

2/10
Maintained action available
ljharb/actions/node/build

ljharb/actions/node/build

GitHub actions I use for CI.

4/10
dev-drprasad/delete-tag-and-release

dev-drprasad/delete-tag-and-release

3/10
vision-web3-foundation/ci-workflows/.github/actions/install-poetry

vision-web3-foundation/ci-workflows/.github/actions/install-poetry

2/10
yonasBSD/codeql/merge/.github/actions/fetch-codeql

yonasBSD/codeql/merge/.github/actions/fetch-codeql

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

3/10
Maintained action available
actions-security-demo/pytorch/pytorch/.github/actions/setup-linux

actions-security-demo/pytorch/pytorch/.github/actions/setup-linux

Tensors and Dynamic neural networks in Python with strong GPU acceleration

2/10
ForAllSecure/mapi-action

ForAllSecure/mapi-action

🤖 Run a Mayhem for API scan in GitHub Actions

2/10
jgehrcke/github-repo-stats

jgehrcke/github-repo-stats

GitHub Action for advanced repository traffic analysis and reporting

3/10