StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

launchdarkly/openfeature-dotnet-server/.github/actions/build-docs

launchdarkly/openfeature-dotnet-server/.github/actions/build-docs

An OpenFeature provider for the LaunchDarkly dotnet server SDK.

5/10
envoyproxy/toolshed/gh-actions/github/checkout

envoyproxy/toolshed/gh-actions/github/checkout

7/10
useblacksmith/golangci-lint-action

useblacksmith/golangci-lint-action

Official GitHub Action for golangci-lint using the Blacksmith cache

3/10
open-component-model/ocm-setup-action

open-component-model/ocm-setup-action

GitHub Action installing the OCM command-line tool

7/10
yonasbsd/greptimedb/.github/actions/setup-etcd-cluster

yonasbsd/greptimedb/.github/actions/setup-etcd-cluster

An open-source, cloud-native, distributed time-series database with PromQL/SQL/Python supported.

5/10
Maintained action available
dmnemec/copy_file_to_another_repo_action

dmnemec/copy_file_to_another_repo_action

This GitHub Action copies a file from the current repository to a location in another repository

6/10
nschloe/action-cached-lfs-checkout

nschloe/action-cached-lfs-checkout

GitHub checkout action with LFS files pulled from cache

6/10
gitguardian/ggshield/actions/secret

gitguardian/ggshield/actions/secret

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

8/10
step-security/split-strings

step-security/split-strings

Github Action for splitting strings into parts by separator with limit. Secure drop-in replacement for xom9ikk/split.

10/10
Maintained by StepSecurity
adrise/matter-casting/.github/actions/dump-disk-info

adrise/matter-casting/.github/actions/dump-disk-info

Matter (formerly Project CHIP) creates more connections between more objects, simplifying development for manufacturers and increasing compatibility for consumers, guided by the Connectivity Standards Alliance.

5/10
Maintained action available
sonarsource/sonar-plugin-api/.actions/get-build-number

sonarsource/sonar-plugin-api/.actions/get-build-number

API to develop plugins for SonarQube (Server, Cloud) and SonarQube for IDE

8/10
cenkalti/backoff

cenkalti/backoff

โฑ The exponential backoff algorithm in Go

4/10
actionshub/terraform-lint

actionshub/terraform-lint

Repository for the terraform-lint Github Action

5/10
jfagoagas/prowler/.github/actions/setup-python-poetry

jfagoagas/prowler/.github/actions/setup-python-poetry

Prowler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains all CIS controls and many more additional checks that help on GDPR, HIPAA and other security frameworks.

3/10
launchdarkly/python-server-sdk-ai/.github/actions/ci

launchdarkly/python-server-sdk-ai/.github/actions/ci

LaunchDarkly Server-side AI SDK for Python

5/10
Maintained action available
pytorch/kineto/test-infra/.github/actions/setup-ssh

pytorch/kineto/test-infra/.github/actions/setup-ssh

A CPU+GPU Profiling library that provides access to timeline traces and hardware performance counters.

2/10
Maintained action available
chainguard-actions/checkout

chainguard-actions/checkout

2/10
cloudposse/github-action-interface-environment

cloudposse/github-action-interface-environment

Get Environments settings from private settings action provider

6/10
nodoubtz-record-label/node/.github/actions/install-clang

nodoubtz-record-label/node/.github/actions/install-clang

npm's fork of nodejs/node, for sending PRs to update deps/npm

3/10
madhead/semver-utils

madhead/semver-utils

One-stop shop for working with semantic versions in your GitHub Actions workflows

4/10