StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

vuetorrent/tolgee-action

vuetorrent/tolgee-action

JS github action to generate language metadata from Tolgee project

0/10
docker/bake-action/%3coie0s0%3e/list-targets

docker/bake-action/%3coie0s0%3e/list-targets

GitHub Action to use Docker Buildx Bake as a high-level build command

5/10
Maintained action available
grafana/epimetheus/.github/promci/actions/setup_environment

grafana/epimetheus/.github/promci/actions/setup_environment

FrostDB backed Prometheus fork

3/10
nev7n/wait_for_response

nev7n/wait_for_response

Github action to wait for a response

5/10
Maintained action available
yonasbsd/affine/.github/actions/prepare-release

yonasbsd/affine/.github/actions/prepare-release

There can be more than Notion and Miro. AFFiNE is a next-gen knowledge base that brings planning, sorting and creating all together. Privacy first, open-source, customizable and ready to use.

4/10
Maintained action available
yakubique/random-number

yakubique/random-number

Github Action that returns a random number

2/10
oxsecurity/megalinter/flavors/javascript

oxsecurity/megalinter/flavors/javascript

๐Ÿฆ™ MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.

5/10
Maintained action available
approved-3rd-party-actions/git-restore-mtime-action

approved-3rd-party-actions/git-restore-mtime-action

A GitHub Workflow Action which restores timestamps of files in the current tree

3/10
ministryofjustice/devsecops-actions/github/repository/archive

ministryofjustice/devsecops-actions/github/repository/archive

A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.

8/10
localstack/localstack/.github/actions/build-image

localstack/localstack/.github/actions/build-image

๐Ÿ’ป A fully functional local AWS cloud stack. Develop and test your cloud & Serverless apps offline

2/10
asymmetric-research/clusterfuzz-fuzzbot-builder

asymmetric-research/clusterfuzz-fuzzbot-builder

Build environment matching a FuzzBot running Ubuntu 22.04

2/10
rudderlabs/airbyte/.github/actions/run-dagger-pipeline

rudderlabs/airbyte/.github/actions/run-dagger-pipeline

Airbyte is an open-source EL(T) platform that helps you replicate your data in your warehouses, lakes and databases.

2/10
Maintained action available
onebrief/gotenberg/.github/actions/clean

onebrief/gotenberg/.github/actions/clean

A Docker-powered stateless API for PDF files.

6/10
gr2m/merge-schedule-action

gr2m/merge-schedule-action

GitHub Action to merge pull requests on a scheduled day

2/10
Maintained action available
caffeelake/servo/.github/actions/parse_msrv

caffeelake/servo/.github/actions/parse_msrv

Servo aims to empower developers with a lightweight, high-performance alternative for embedding web technologies in applications.

3/10
tanker187/account-sdk/.github/actions/setup

tanker187/account-sdk/.github/actions/setup

3/10
coveo/ui-kit/.github/actions/cypress-atomic-insight-panel

coveo/ui-kit/.github/actions/cypress-atomic-insight-panel

Coveo UI kit repository, home of @coveo/headless, @coveo/atomic, and more.

4/10
Maintained action available
step-security/alls-green/__builder_checkout_dir__/.github/actions/privacy-check

step-security/alls-green/__builder_checkout_dir__/.github/actions/privacy-check

A check for whether the dependency jobs are all green. Secure drop-in replacement for re-actors/alls-green.

9/10
stefanprodan/timoni/actions/setup

stefanprodan/timoni/actions/setup

Timoni is a package manager for Kubernetes, powered by CUE and inspired by Helm.

5/10
Maintained action available
coveooss/coveo-python-oss/.github/workflows/actions/post-publish

coveooss/coveo-python-oss/.github/workflows/actions/post-publish

This collection of general purpose python magic was too good to keep for ourselves!

4/10