StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

step-security/ssh-key-action/.

step-security/ssh-key-action/.

GitHub Action that installs SSH key to .ssh. Secure drop-in replacement for shimataro/ssh-key-action.

10/10
rasahq/setup-poetry

rasahq/setup-poetry

Github workflow to set up poetry

2/10
shrink/actions-docker-extract

shrink/actions-docker-extract

:octocat: Extract file(s) from a Docker Image

3/10
dcodeio/setup-node-nvm

dcodeio/setup-node-nvm

Set up your GitHub Actions workflow with a specific version of node.js using nvm.

2/10
wader/bump/action

wader/bump/action

A generic version tracking and update tool

5/10
Maintained action available
julia-actions/julia-format

julia-actions/julia-format

GitHub action for JuliaFormatter.jl

4/10
step-security/deployment-status

step-security/deployment-status

GitHub action to create a deployment status update. Secure drop-in replacement for chrnorm/deployment-status.

10/10
Maintained by StepSecurity
sidx1024/report-nyc-coverage-github-action

sidx1024/report-nyc-coverage-github-action

GitHub Action that posts the report in a comment on a GitHub Pull Request from coverage data generated by nyc (istanbul)

2/10
uniswap/ai-toolkit/.github/actions/build-plugin-config

uniswap/ai-toolkit/.github/actions/build-plugin-config

๐Ÿค– AI Toolkit - Standardized setup for Claude Code AI workflows. Nx monorepo with reusable agents, commands, and generators for enhanced AI-assisted development.

7/10
aquaproj/registry-action/validate-json-schema

aquaproj/registry-action/validate-json-schema

GitHub Actions for aqua Registry

6/10
cutenode/action-always-fail

cutenode/action-always-fail

An action that will always fail, so when working on developing actions you can easily re-run them even if your action succeeds.

3/10
trunk-io/trunk-action/setup

trunk-io/trunk-action/setup

Trunk.io GitHub Action

7/10
project-tick/project-tick/.github/actions/meshmc/package/linux

project-tick/project-tick/.github/actions/meshmc/package/linux

Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick

5/10
nebularg/actions-luacheck

nebularg/actions-luacheck

3/10
rashdamada/biomes-game/.github/actions/cached-pip-install

rashdamada/biomes-game/.github/actions/cached-pip-install

Biomes is an open source sandbox MMORPG built for the web using web technologies such as Next.js, Typescript, React and WebAssembly.

2/10
amartyajha/airbyte/.github/actions/image

amartyajha/airbyte/.github/actions/image

The leading data integration platform for ETL / ELT data pipelines from APIs, databases & files to data warehouses, data lakes & data lakehouses. Both self-hosted and Cloud-hosted.

0/10
project-tick/project-tick/.github/actions/setup-dependencies

project-tick/project-tick/.github/actions/setup-dependencies

Project Tick is a project dedicated to providing developers with ease of use and users with long-lasting software. SoT: https://git.projecttick.org/project-tick

5/10
awalsh128/cache-apt-pkgs-action

awalsh128/cache-apt-pkgs-action

Cache APT packages in GitHub Actions

4/10
sonarsource/sonarlint-intellij/.actions/get-build-number

sonarsource/sonarlint-intellij/.actions/get-build-number

SonarQube plugin for JetBrains IDEs providing code quality and security feedback directly in the IDE

6/10
kong/create-pull-request

kong/create-pull-request

A GitHub action to create a pull request for changes to your repository in the actions workspace

2/10