StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

anchore/grype

anchore/grype

A vulnerability scanner for container images and filesystems

8/10
ministryofjustice/devsecops-actions/cruft/install

ministryofjustice/devsecops-actions/cruft/install

A collection of reusable GitHub Actions that standardise DevSecOps security scanning i.e. SCA, SAST, DAST, secrets, IaC, and container security.

7/10
yonasbsd/servo/.github/actions/setup-python

yonasbsd/servo/.github/actions/setup-python

Servo aims to empower developers with a lightweight, high-performance alternative for embedding web technologies in applications.

5/10
Maintained action available
yonasbsd/pre-commit/.github/actions/pre-test

yonasbsd/pre-commit/.github/actions/pre-test

A framework for managing and maintaining multi-language pre-commit hooks.

5/10
Maintained action available
ai-dynamo/dynamo/.github/actions/setup-snapshot-agent

ai-dynamo/dynamo/.github/actions/setup-snapshot-agent

A Datacenter Scale Distributed Inference Serving Framework

4/10
Maintained action available
openharmony-rs/setup-ohos-sdk

openharmony-rs/setup-ohos-sdk

Github action to setup the OpenHarmony SDK

5/10
allenporter/flux-local/action/test

allenporter/flux-local/action/test

flux-local is a set of tools and libraries for managing a local flux gitops repository focused on validation steps to help improve quality of commits, PRs, and general local testing.

5/10
Maintained action available
tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

tbowman01/prompt-card-system/.github/actions/action-semantic-pull-request-v5

A comprehensive prompt testing and evaluation system with advanced analytics, AI-powered optimization, and real-time performance monitoring.

5/10
step-security/assign-author/__builder_checkout_dir__/.github/actions/secure-download-artifact

step-security/assign-author/__builder_checkout_dir__/.github/actions/secure-download-artifact

GitHub Actions to assign author to issue or PR. Secure drop-in replacement for technote-space/assign-author.

8/10
yonasbsd/greptimedb/.github/actions/setup-kafka-cluster

yonasbsd/greptimedb/.github/actions/setup-kafka-cluster

An open-source, cloud-native, distributed time-series database with PromQL/SQL/Python supported.

5/10
Maintained action available
step-security/pull-request-comment-branch

step-security/pull-request-comment-branch

A GitHub Action to get the head ref and sha of a pull request comment. Secure drop-in replacement for xt0rted/pull-request-comment-branch.

10/10
Maintained by StepSecurity
base/optimism/.github/actions/docker-build-prep

base/optimism/.github/actions/docker-build-prep

Optimism is Ethereum, scaled.

5/10
Maintained action available
oracle-actions/get-ocir-repository

oracle-actions/get-ocir-repository

Create or find an Oracle Cloud Infrastructure Registry container repository

2/10
elide-dev/labs-openjdk/.github/actions/get-jtreg

elide-dev/labs-openjdk/.github/actions/get-jtreg

JDK fork for building GraalVM CE.

5/10
step-security/codecov-action/__builder_checkout_dir__/.github/actions/privacy-check

step-security/codecov-action/__builder_checkout_dir__/.github/actions/privacy-check

GitHub Action that uploads coverage to Codecov :open_umbrella:. Secure drop-in replacement for codecov/codecov-action.

10/10
pkgjs/request-codeowner-review

pkgjs/request-codeowner-review

3/10
openzeppelin/ui-builder/.github/actions/image

openzeppelin/ui-builder/.github/actions/image

UI Builder is an open-source blockchain development tool that helps developers and non-developers create user-friendly interfaces for smart contract interaction by providing a chain-agnostic form builder that generates standalone "mini apps" without requiring backend infrastructure.

4/10
Maintained action available
ableco/qrcode-comment-action

ableco/qrcode-comment-action

GitHub Action to create a comment with a QR code in the PR

3/10
datatheorem/datatheorem-mobile-secure-action

datatheorem/datatheorem-mobile-secure-action

1/10
mauriciomenon/ssa_consulta_rapida/.github/actions/configure-qwen-opencode

mauriciomenon/ssa_consulta_rapida/.github/actions/configure-qwen-opencode

Ferramenta para consulta e extraรงรฃo de dados de relatรณrios de SSAs.

5/10
Maintained action available