StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

politicalsphere/ci/.github/actions/ps-task/license-check

politicalsphere/ci/.github/actions/ps-task/license-check

CI/CD pipelines and GitHub Actions for Political Sphere

2/10
ben-z/gh-action-mutex

ben-z/gh-action-mutex

A simple locking/unlocking mechanism to provide mutual exclusion in Github Actions

4/10
popsiclestick/gist-sync-action

popsiclestick/gist-sync-action

Github action to mirror a file into a gist

2/10
step-security/nats-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/nats-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

start nats server(s) for Github Actions. Secure drop-in replacement for onichandame/nats-action.

10/10
step-security/pull-request-comment-trigger

step-security/pull-request-comment-trigger

A github action for detecting a "trigger" in a pull request description or comment. Secure drop-in replacement for Khan/pull-request-comment-trigger.

10/10
Maintained by StepSecurity
crossplane-contrib/setup-crossplane-action

crossplane-contrib/setup-crossplane-action

GitHub Action to setup the Crossplane binary

3/10
fortify/gha-export-vulnerabilities

fortify/gha-export-vulnerabilities

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead

2/10
yonasbsd/rspack/.github/actions/rustup/cargo

yonasbsd/rspack/.github/actions/rustup/cargo

A fast Rust-based web bundler.

5/10
Maintained action available
tanker187/cloudflare-docs/.github/actions/issue-label-assign

tanker187/cloudflare-docs/.github/actions/issue-label-assign

Cloudflare’s documentation

3/10
Maintained action available
mansona/npm-lockfile-version

mansona/npm-lockfile-version

2/10
elastic/oblt-actions/buildkite/run

elastic/oblt-actions/buildkite/run

7/10
launchdarkly/go-configtypes/.github/actions/unit-tests

launchdarkly/go-configtypes/.github/actions/unit-tests

Golang tools for reading and validating configuration options

4/10
Maintained action available
stackadapt/action-download-artifact

stackadapt/action-download-artifact

:gear: A GitHub Action to download an artifact associated with given workflow and commit or other criteria

2/10
sagikazarmark/octoslash-action

sagikazarmark/octoslash-action

5/10
azure/functions-action

azure/functions-action

Enable GitHub developers to deploy to Azure Function Apps using GitHub Actions

7/10
pravipati-sandbox/codeql-action/init

pravipati-sandbox/codeql-action/init

Actions for running CodeQL analysis

2/10
ethereumremix/sol-test

ethereumremix/sol-test

2/10
grafana/community-contributions/.grafana-main/.github/actions/changelog

grafana/community-contributions/.grafana-main/.github/actions/changelog

External contributor PR workflow testing sandbox

2/10
kong/slsa-generator/.github/actions/secure-download-folder

kong/slsa-generator/.github/actions/secure-download-folder

Language-agnostic SLSA provenance generation for Github Actions

3/10
action-stars/install-tool-from-github-release

action-stars/install-tool-from-github-release

GitHub Acton to download a GitHub repository release artifact.

5/10