StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/cancel-action

step-security/cancel-action

Secure drop-in replacement for andymckay/cancel-action.

10/10
Maintained by StepSecurity
fern-api/setup-fern-cli

fern-api/setup-fern-cli

A GitHub Action that installs the Fern CLI into a workflow using npm.

4/10
colpal/actions-clean

colpal/actions-clean

A Github Action to clean the workspace on a self-hosted runner

3/10
tree-sitter/setup-action/cli

tree-sitter/setup-action/cli

Setup action for the tree-sitter library & CLI

4/10
gauthamchandra/mvnd-action

gauthamchandra/mvnd-action

For using the Maven Daemon in Github Actions

3/10
jetbrains/resharper-inspectcode

jetbrains/resharper-inspectcode

C# static analysis on GitHub Actions using JetBrains ReSharper InspectCode.

4/10
Maintained action available
redhat-plumbers-in-action/differential-shellcheck

redhat-plumbers-in-action/differential-shellcheck

๐Ÿš GitHub Action for running ShellCheck differentially

7/10
slsa-framework/slsa-github-generator/.github/actions/secure-upload-folder

slsa-framework/slsa-github-generator/.github/actions/secure-upload-folder

Language-agnostic SLSA provenance generation for Github Actions

5/10
equinor/procosys-js-frontend/.github/actions/pnpm-setup

equinor/procosys-js-frontend/.github/actions/pnpm-setup

Frontend javascript application for Project Completion System (ProCoSys)

5/10
modeseven-lfreleng-actions/python-test-action

modeseven-lfreleng-actions/python-test-action

Tests a Python project and generates coverage reports

4/10
Maintained action available
step-security/setup-msbuild/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/setup-msbuild/__builder_checkout_dir__/.github/actions/secure-download-artifact

A GitHub Action to facilitate configuring MSBuild in the workflow PATH for building .NET Framework applications. Secure drop-in replacement for microsoft/setup-msbuild.

10/10
canonical/get-workflow-version-action

canonical/get-workflow-version-action

GitHub action to get commit SHA that GitHub Actions reusable workflow was called with

4/10
tj-actions/glob

tj-actions/glob

:octocat: Github action to match glob patterns with support for matching deleted files.

2/10
step-security/action-download-artifact/__builder_checkout_dir__/.github/actions/privacy-check

step-security/action-download-artifact/__builder_checkout_dir__/.github/actions/privacy-check

:gear: A GitHub Action to download an artifact associated with given workflow and commit or other criteria. Secure drop-in replacement for dawidd6/action-download-artifact.

10/10
launchdarkly/ios-client-sdk/.github/actions/build-watchos

launchdarkly/ios-client-sdk/.github/actions/build-watchos

LaunchDarkly Client-side SDK for iOS (Swift and Obj-C)

6/10
step-security/jest-coverage-report-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/jest-coverage-report-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

Track your code coverage in every pull request. Secure drop-in replacement for ArtiomTr/jest-coverage-report-action.

10/10
camunda/infra-global-github-actions/fossa/pr-check

camunda/infra-global-github-actions/fossa/pr-check

Small Github Actions maintained by Infra team and used by other teams inside Camunda

6/10
kong/insomnia/__builder_checkout_dir__/.github/actions/privacy-check

kong/insomnia/__builder_checkout_dir__/.github/actions/privacy-check

The open-source, cross-platform API client for GraphQL, REST, WebSockets, SSE and gRPC. With Cloud, Local and Git storage.

7/10
vendic/hyva-checkout-google-address-autocomplete/.github/actions/setup

vendic/hyva-checkout-google-address-autocomplete/.github/actions/setup

Hyvรค checkout compatibility module for vendic/magento2-google-address-autocomplete

4/10
andrekurait/docker-cache

andrekurait/docker-cache

Cache Docker Images Whether Built or Pulled

5/10
Maintained action available