StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

dargon789/coinbase-smartcontracts/.github/actions/setup-env

dargon789/coinbase-smartcontracts/.github/actions/setup-env

Coinbase Developer ethereum smartcontracts deploy dapp hardhat foundry wagmi remix-project & tenderly verify contract uniswap 1inch defi dex onchain

7/10
yonasbsd/session-desktop/actions/make_release_build

yonasbsd/session-desktop/actions/make_release_build

Session Desktop - A Decentralized, Onion Routed, Private Messenger

3/10
Maintained action available
codecov/test-results-action

codecov/test-results-action

6/10
federacy/scan-action

federacy/scan-action

Github Action for security scanning utilizing Salus by Coinbase

2/10
anchore/go-make/.github/actions/wait-for-check

anchore/go-make/.github/actions/wait-for-check

7/10
step-security/setup-yq

step-security/setup-yq

Sets up YQ, yet-another-markup-language-query-er, for use in your Github Actions workflow. Secure drop-in replacement for chrisdickinson/setup-yq.

9/10
Maintained by StepSecurity
paddlehq/go-aws-ssm/.github/actions/setup-databases

paddlehq/go-aws-ssm/.github/actions/setup-databases

Wraps the aws-sdk-go and hides the complexity of dealing with the not so Go friendly AWS SDK.

4/10
envoyproxy/toolshed/actions/github/merge-commit

envoyproxy/toolshed/actions/github/merge-commit

7/10
launchdarkly/js-eventsource/.github/actions/publish

launchdarkly/js-eventsource/.github/actions/publish

EventSource client for Node.js and Browser (polyfill)

4/10
grafana/plugin-ci-workflows/actions/internal/plugins/package

grafana/plugin-ci-workflows/actions/internal/plugins/package

Re-usable GitHub Actions workflows for building, testing, releasing and deploying plugins

6/10
step-security/allcheckspassed

step-security/allcheckspassed

GitHub Action to confirm that all checks reported on a commit have passed. Secure drop-in replacement for wechuli/allcheckspassed.

9/10
Maintained by StepSecurity
regclient/actions/image

regclient/actions/image

7/10
actions-security-demo/script-injection/.grafana-main/pkg/build/actions/bump-version

actions-security-demo/script-injection/.grafana-main/pkg/build/actions/bump-version

2/10
grafana/grafana/.github/actions/setup-grafana-bench

grafana/grafana/.github/actions/setup-grafana-bench

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

4/10
Maintained action available
orhun/image

orhun/image

Encoding and decoding images in Rust

3/10
reality2byte/action/upload-sarif

reality2byte/action/upload-sarif

7/10
koki-develop/hub-purge-action

koki-develop/hub-purge-action

๐Ÿงน Action to clear GitHub image caches.

2/10
appthreat/sast-scan-action

appthreat/sast-scan-action

GitHub action for performing SAST scanning using various oss tools such as gitleaks, bandit, findsecbugs etc

3/10
step-security/terraform-cloud-provider-publish/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/terraform-cloud-provider-publish/__builder_checkout_dir__/.github/actions/secure-download-artifact

An action for publishing terraform providers to a private registry. Secure drop-in replacement for thechrisjohnson/terraform-cloud-provider-publish.

10/10
nvidia/nautobot-app-nvdatamodels/.github/.tmp/.generated-actions/run-pypi-publish-in-docker-container

nvidia/nautobot-app-nvdatamodels/.github/.tmp/.generated-actions/run-pypi-publish-in-docker-container

A Nautobot plugin which provides data models for NVIDIA products

5/10