StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

grafana/grafana/.github/actions/check-jobs

grafana/grafana/.github/actions/check-jobs

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

4/10
Maintained action available
step-security/allure-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/allure-action/__builder_checkout_dir__/.github/actions/secure-download-artifact

Secure drop-in replacement for allure-framework/allure-action.

10/10
elastic/docs-builder/actions/validate-inbound-local

elastic/docs-builder/actions/validate-inbound-local

7/10
step-security/r-lib-actions/setup-renv

step-security/r-lib-actions/setup-renv

GitHub Actions for the R community. Secure drop-in replacement for r-lib/actions.

10/10
Maintained by StepSecurity
keisukeyamashita/setup-release

keisukeyamashita/setup-release

๐ŸŽ GitHub Action that downloads a release and provision for later job usage

2/10
cloudposse/github-action-atmos-affected-stacks

cloudposse/github-action-atmos-affected-stacks

A composite workflow that runs the atmos describe affected command

7/10
sh-cho/netty/.github/actions/thread-dump-jvms

sh-cho/netty/.github/actions/thread-dump-jvms

Netty project - an event-driven asynchronous network application framework

3/10
depot/bake-action

depot/bake-action

GitHub Action to use Buildx Bake as a high-level build command using Depot remote builders

3/10
ozi-project/provenance

ozi-project/provenance

Provenance workflow for OZI tools

5/10
Maintained action available
anchore/grype

anchore/grype

A vulnerability scanner for container images and filesystems

8/10
ministryofjustice/devsecops-actions/cruft/install

ministryofjustice/devsecops-actions/cruft/install

A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.

8/10
yonasbsd/servo/.github/actions/setup-python

yonasbsd/servo/.github/actions/setup-python

Servo aims to empower developers with a lightweight, high-performance alternative for embedding web technologies in applications.

5/10
Maintained action available
yonasbsd/pre-commit/.github/actions/pre-test

yonasbsd/pre-commit/.github/actions/pre-test

A framework for managing and maintaining multi-language pre-commit hooks.

5/10
Maintained action available
openharmony-rs/setup-ohos-sdk

openharmony-rs/setup-ohos-sdk

Github action to setup the OpenHarmony SDK

5/10
allenporter/flux-local/action/test

allenporter/flux-local/action/test

flux-local is a set of tools and libraries for managing a local flux gitops repository focused on validation steps to help improve quality of commits, PRs, and general local testing.

5/10
Maintained action available
tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

A comprehensive prompt testing and evaluation system with advanced analytics, AI-powered optimization, and real-time performance monitoring.

5/10
step-security/assign-author/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/assign-author/__builder_checkout_dir__/.github/actions/secure-download-artifact

GitHub Actions to assign author to issue or PR. Secure drop-in replacement for technote-space/assign-author.

10/10
yonasbsd/greptimedb/.github/actions/setup-kafka-cluster

yonasbsd/greptimedb/.github/actions/setup-kafka-cluster

An open-source, cloud-native, distributed time-series database with PromQL/SQL/Python supported.

5/10
Maintained action available
base/optimism/.github/actions/docker-build-prep

base/optimism/.github/actions/docker-build-prep

Optimism is Ethereum, scaled.

5/10
Maintained action available
oracle-actions/get-ocir-repository

oracle-actions/get-ocir-repository

Create or find an Oracle Cloud Infrastructure Registry container repository

2/10