StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

project-tick/project-tick/.github/actions/meshmc/setup-dependencies/macos

project-tick/project-tick/.github/actions/meshmc/setup-dependencies/macos

Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick

5/10
caffeelake/metallb/.github/workflows/composite/collectlogs

caffeelake/metallb/.github/workflows/composite/collectlogs

A network load-balancer implementation for Kubernetes using standard routing protocols

2/10
launchdarkly/ruby-server-sdk-otel/.github/actions/build-docs

launchdarkly/ruby-server-sdk-otel/.github/actions/build-docs

LaunchDarkly SDK OTEL integration for the Ruby server side SDK

5/10
step-security/push-md-to-notion/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/push-md-to-notion/__builder_checkout_dir__/.github/actions/secure-download-artifact

Push Markdown to Notion. Secure drop-in replacement for JoshStern/push-md-to-notion.

10/10
yonasbsd/wazuh/.github/actions/coverity/build

yonasbsd/wazuh/.github/actions/coverity/build

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

4/10
Maintained action available
mlugg/setup-zig

mlugg/setup-zig

Install a Zig compiler for usage in GitHub Actions workflows. Read-only mirror of https://codeberg.org/mlugg/setup-zig.

3/10
stakekit/js-sdk/.github/composite_actions/initial_setup

stakekit/js-sdk/.github/composite_actions/initial_setup

The StakeKit SDKs provide a typesafe way to utilize StakeKit in JavaScript or TypeScript applications. Three packages are currently published by StakeKit to facilitate the consumption of the StakeKit API.

1/10
siemens/ix-icons/.github/workflows/actions/build

siemens/ix-icons/.github/workflows/actions/build

Icon library for @siemens/ix

3/10
github/setup-licensed

github/setup-licensed

Set up your GitHub Actions workflow with a specific version of github/licensed

4/10
andife/openvino/.github/actions/wait-for-check-completion

andife/openvino/.github/actions/wait-for-check-completion

OpenVINOβ„’ is an open source toolkit for optimizing and deploying AI inference

3/10
tbroadley/spellchecker-cli-action

tbroadley/spellchecker-cli-action

Run Spellchecker CLI in GitHub Actions workflows.

1/10
dexola-tech/staking

dexola-tech/staking

2/10
opensource-nepal/commitlint

opensource-nepal/commitlint

Lint Conventional Commit message on GitHub Actions and pre-commit.

6/10
coveooss/areas

coveooss/areas

GitHub action to manage the ownership of code areas and its PR reviews and labeling

3/10
Maintained action available
surrealdb/rocksdb/.github/actions/install-gflags-on-macos

surrealdb/rocksdb/.github/actions/install-gflags-on-macos

A library that provides an embeddable, persistent key-value store for fast storage.

6/10
pandaswhocode/rootly-alert-action

pandaswhocode/rootly-alert-action

Implements the rootly creates an alert api

2/10
nodenv/actions/setup-nodenv

nodenv/actions/setup-nodenv

Leverage nodenv within GitHub Actions

4/10
agslima/app-stayhealthy-pipeline/.github/actions/validate-kubernetes-manifests

agslima/app-stayhealthy-pipeline/.github/actions/validate-kubernetes-manifests

Governed CI/CD pipeline demonstrating policy-driven delivery, GitOps releases, supply-chain integrity, and risk-based governance practices using a full-stack reference application.

7/10
dawidd6/action-send-mail/_next/static/chunks/11621-dab816603cd195b7.js

dawidd6/action-send-mail/_next/static/chunks/11621-dab816603cd195b7.js

:gear: A GitHub Action to send an email to multiple recipients

5/10
Maintained action available
kong/release-downloader

kong/release-downloader

Github action to download release assets from private or public repositories

4/10
Maintained action available