StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

servicenow/sncicd-apply-changes

servicenow/sncicd-apply-changes

3/10
aurornz/paths-filter

aurornz/paths-filter

Conditionally run actions based on files modified by PR, feature branch or pushed commits

3/10
bus1/cabuild/action/msdevshell

bus1/cabuild/action/msdevshell

Content-Addressable Build Environments

2/10
cloudzero/cloudzero-action-publish-costformation

cloudzero/cloudzero-action-publish-costformation

This is a GitHub action to publish CostFormation definitions to the CloudZero platform.

5/10
wyrihaximus/github-action-wait-for-status

wyrihaximus/github-action-wait-for-status

Github Action that waits for successful commit status

3/10
oxsecurity/megalinter/flavors/cupcake

oxsecurity/megalinter/flavors/cupcake

๐Ÿฆ™ MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.

6/10
launchdarkly/swift-launchdarkly-observability/.github/actions/test-swiftpm

launchdarkly/swift-launchdarkly-observability/.github/actions/test-swiftpm

LaunchDarkly Observability SDK for Swift

4/10
Maintained action available
yonasbsd/buck2/.github/actions/contributing.md

yonasbsd/buck2/.github/actions/contributing.md

Build system, successor to Buck

3/10
Maintained action available
soos-io/soos-dast-github-action

soos-io/soos-dast-github-action

SOOS DAST GitHub Action - Register for a Free Trial at https://app.soos.io/register

4/10
snnaplab/get-labels-action

snnaplab/get-labels-action

3/10
optum/sourcehawk/.github/actions/build-windows-native-image

optum/sourcehawk/.github/actions/build-windows-native-image

Sourcehawk is an extensible compliance as code tool which allows development teams to run compliance scans on their source code.

3/10
singularityhub/install-singularity

singularityhub/install-singularity

Action to install Singlarity optimized for simplicity.

3/10
step-security/test-reporter/__builder_checkout_dir__/.github/actions/action-info.client.tsx

step-security/test-reporter/__builder_checkout_dir__/.github/actions/action-info.client.tsx

Displays test results from popular testing frameworks directly in GitHub. Secure drop-in replacement for dorny/test-reporter.

8/10
turtlesec-no/get-ninja

turtlesec-no/get-ninja

3/10
step-security/filter-sarif

step-security/filter-sarif

GitHub Action for filtering Code Scanning alerts by path and id. Secure drop-in replacement for advanced-security/filter-sarif.

10/10
Maintained by StepSecurity
wistia/parse-tool-versions

wistia/parse-tool-versions

Github action created to parse .tool-versions into the environment

5/10
fortify/github-action/internal/run

fortify/github-action/internal/run

Fortify GitHub Actions

2/10
Maintained action available
launchdarkly/swift-eventsource/.github/actions/build-tvos

launchdarkly/swift-eventsource/.github/actions/build-tvos

Server-sent events (SSE) client implementation in Swift for iOS, macOS, tvOS, and watchOS

5/10
ledgerhq/ledger-live/tools/actions/composites/cache/exists

ledgerhq/ledger-live/tools/actions/composites/cache/exists

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
Maintained action available
ministryofjustice/laa-inquests-ui/.github/actions/setup-node

ministryofjustice/laa-inquests-ui/.github/actions/setup-node

4/10