StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

clementtsang/cargo-action

clementtsang/cargo-action

A simple GitHub Action to invoke cargo/cross.

4/10
telegramdesktop/winget-releaser

telegramdesktop/winget-releaser

Publish new releases of your application to the Windows Package Manager easily.

2/10
sett-and-hive/sarif-to-issue-action

sett-and-hive/sarif-to-issue-action

A GitHub action for @security-alert/sarif-to-issue

6/10
dcarbone/install-yq-action

dcarbone/install-yq-action

Install YQ into the action tool cache without needing nodejs

4/10
huntridge-labs/argus/.github/actions/scanner-zap-summary

huntridge-labs/argus/.github/actions/scanner-zap-summary

Argus brings β€œa hundred eyes” to your project, combining leading open source security tools into a scalable, automated, continuous security pipeline.

2/10
actions/create-release

actions/create-release

An Action to create releases via the GitHub Release API

6/10
grafana/k6-extension-actions/fill

grafana/k6-extension-actions/fill

Reusable composite GitHub actions to support k6 extension development.

4/10
honeycombio/oss-management-actions/labels

honeycombio/oss-management-actions/labels

A set of GitHub Actions to apply a common set of OSS management workflows to Honeycomb projects.

4/10
aquasecurity/trivy-action

aquasecurity/trivy-action

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

8/10
envoyproxy/toolshed/actions/github/run

envoyproxy/toolshed/actions/github/run

7/10
tryghost/actions/actions/slack-build

tryghost/actions/actions/slack-build

GitHub Actions to power Ghost development

6/10
dagster-io/dagster-cloud-action

dagster-io/dagster-cloud-action

4/10
agogear/chatgpt-pr-review

agogear/chatgpt-pr-review

2/10
jfagoagas/prowler/.github/actions/trivy-scan

jfagoagas/prowler/.github/actions/trivy-scan

Prowler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains all CIS controls and many more additional checks that help on GDPR, HIPAA and other security frameworks.

5/10
Maintained action available
goreleaser/goreleaser

goreleaser/goreleaser

Release engineering, simplified

9/10
jwalton/gh-ecr-push

jwalton/gh-ecr-push

GitHub Action to push a docker image to Amazon ECR.

0/10
wdzeng/edge-addon

wdzeng/edge-addon

GitHub Action for publishing extension to Microsoft Edge Add-on!

2/10
arduino/arduino-lint-action

arduino/arduino-lint-action

GitHub Actions action to check Arduino projects for problems

7/10
taiki-e/upload-rust-binary-action

taiki-e/upload-rust-binary-action

GitHub Action for building and uploading Rust binary to GitHub Releases.

8/10
spotdemo4/nix-init

spotdemo4/nix-init

action to initialize nix repos

6/10