StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/cysharp-actions/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/cysharp-actions/__builder_checkout_dir__/.github/actions/secure-download-artifact

Secure drop-in replacement for Cysharp/Actions.

10/10
step-security/setup-zig/__builder_checkout_dir__/.github/actions/privacy-check

step-security/setup-zig/__builder_checkout_dir__/.github/actions/privacy-check

Install a Zig compiler for usage in GitHub Actions workflows. Secure drop-in replacement for mlugg/setup-zig.

10/10
lfreleng-actions/python-sbom-action

lfreleng-actions/python-sbom-action

Generates an SBOM for Python projects

4/10
Maintained action available
caffeelake/kestra/actions/.github/actions/setup-build

caffeelake/kestra/actions/.github/actions/setup-build

:zap: Universal Workflow Orchestration Platform — Code in any language, run anywhere. 800+ plugins for data, infrastructure, and AI automation.

3/10
politicalsphere/ci/.github/actions/ps-task/test

politicalsphere/ci/.github/actions/ps-task/test

CI/CD pipelines and GitHub Actions for Political Sphere

2/10
yonasbsd/fluent-bit/.github/actions/generate-package-build-matrix

yonasbsd/fluent-bit/.github/actions/generate-package-build-matrix

Fast and Lightweight Logs and Metrics processor for Linux, BSD, OSX and Windows

5/10
Maintained action available
step-security/slash-command-dispatch

step-security/slash-command-dispatch

A GitHub action that facilitates "ChatOps" by creating repository dispatch events for slash commands. Secure drop-in replacement for peter-evans/slash-command-dispatch.

10/10
Maintained by StepSecurity
launchdarkly/ruby-server-sdk/.github/actions/fill

launchdarkly/ruby-server-sdk/.github/actions/fill

LaunchDarkly Server-side SDK for Ruby

6/10
mridang/action-semantic-release

mridang/action-semantic-release

Automates semantic-release on GitHub pushes, including plugin management and optional status check waiting

2/10
Maintained action available
openzeppelin/compact-tools/.github/actions/setup

openzeppelin/compact-tools/.github/actions/setup

A monorepo for collecting all the shared Compact tools

8/10
elastic/apm-agent-dotnet/.github/workflows/bootstrap

elastic/apm-agent-dotnet/.github/workflows/bootstrap

7/10
edera-dev/cross/.github/actions/setup-rust

edera-dev/cross/.github/actions/setup-rust

“Zero setup” cross compilation and “cross testing” of Rust crates

3/10
ionos-deploy-now/artifact-action

ionos-deploy-now/artifact-action

1/10
neondatabase/neon/.github/actions/download

neondatabase/neon/.github/actions/download

Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, code-like database branching, and scale to zero.

3/10
ministryofjustice/hmpps-probation-integration-services/.github/actions/dependabot-automerge

ministryofjustice/hmpps-probation-integration-services/.github/actions/dependabot-automerge

A collection of small, domain-focused integrations to support HMPPS Digital services that need to interact with probation data.

8/10
spenserblack/actions-wiki

spenserblack/actions-wiki

:open_book: Deploy docs from your source tree to a GitHub wiki

2/10
ministryofjustice/hmpps-github-actions/.github/actions/slack_codescan_notification

ministryofjustice/hmpps-github-actions/.github/actions/slack_codescan_notification

Github actions for HMPPS projects

6/10
jawills/sf-deploy

jawills/sf-deploy

Deploy SF Metadata using Github Actions

4/10
approved-3rd-party-actions/mage-action

approved-3rd-party-actions/mage-action

GitHub Action for Mage

2/10
jactions/maven-version

jactions/maven-version

Simple GitHub Action for getting Maven version.

4/10