StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

launchdarkly/openfeature-node-server/.github/actions/publish-npm

launchdarkly/openfeature-node-server/.github/actions/publish-npm

An open feature provider for the LaunchDarkly node SDK.

5/10
step-security/powershell/__builder_checkout_dir__/.github/actions/privacy-check

step-security/powershell/__builder_checkout_dir__/.github/actions/privacy-check

GH Action to run Az PowerShell scripts for developers and administrators to develop, deploy, and manage Microsoft Azure applications. Secure drop-in replacement for azure/powershell.

9/10
sozercan/kaito/.github/actions/e2e-base-setup

sozercan/kaito/.github/actions/e2e-base-setup

Kubernetes AI Toolchain Operator

2/10
yonasbsd/nix/.github/actions/install-nix-action

yonasbsd/nix/.github/actions/install-nix-action

Nix, the purely functional package manager

5/10
Maintained action available
step-security/setup-licensed/__builder_checkout_dir__/.github/actions/image

step-security/setup-licensed/__builder_checkout_dir__/.github/actions/image

Set up your GitHub Actions workflow with a specific version of licensee/licensed. Secure drop-in replacement for licensee/setup-licensed.

9/10
ledgerhq/ledger-live/tools/actions/composites/run-e2e-playwright-tests

ledgerhq/ledger-live/tools/actions/composites/run-e2e-playwright-tests

Mono-repository for packages related to Ledger Live and its JavaScript ecosystem.

4/10
Maintained action available
octokit/graphql-action

octokit/graphql-action

A GitHub Action to send queries to GitHub's GraphQL API

8/10
hyperledger/indy-shared-gha/.github/actions/publish-deb

hyperledger/indy-shared-gha/.github/actions/publish-deb

4/10
cezarypiatek/vsixpublisheraction

cezarypiatek/vsixpublisheraction

GithubAction for publishing extensions to Visual Studio Marketplace

2/10
burnett01/actions-drawio

burnett01/actions-drawio

Convert draw.io documents to jpeg, png, svg, pdf using drawio-batch.

3/10
secureblue/secureblue/.github/workflows/shared-runner-setup

secureblue/secureblue/.github/workflows/shared-runner-setup

A security-focused desktop and server linux operating system.

8/10
actions-security-demo/pytorch/.github/actions/setup-linux

actions-security-demo/pytorch/.github/actions/setup-linux

Tensors and Dynamic neural networks in Python with strong GPU acceleration

2/10
step-security/protobuf-ci/composer-setup

step-security/protobuf-ci/composer-setup

A shared repository for Protobuf CI actions. Secure drop-in replacement for protocolbuffers/protobuf-ci.

10/10
Maintained by StepSecurity
tbowman01/prompt-card-system/.github/actions/statusline

tbowman01/prompt-card-system/.github/actions/statusline

A comprehensive prompt testing and evaluation system with advanced analytics, AI-powered optimization, and real-time performance monitoring.

5/10
step-security/rust-cache/__builder_checkout_dir__/.github/actions/privacy-check

step-security/rust-cache/__builder_checkout_dir__/.github/actions/privacy-check

A GitHub Action that implements smart caching for rust/cargo projects. Secure drop-in replacement for Swatinem/rust-cache.

8/10
redhat-actions/oc-login

redhat-actions/oc-login

GitHub Action to log in to an OpenShift cluster and set up a Kubernetes context.

6/10
tamasfe/auto-tag

tamasfe/auto-tag

3/10
babenek/credsweeper

babenek/credsweeper

CredSweeper is a tool to detect credentials in any directories or files. CredSweeper could help users to detect unwanted exposure of credentials (such as personal information, token, passwords, api keys and etc) in advance. By scanning lines, filtering, and using AI model as option, CredSweeper reports lines with possible credentials, where the line is, and expected type of the credential as a result.

5/10
Maintained action available
ministryofjustice/money-to-prisoners-start-page/.github/actions/clean-ecr

ministryofjustice/money-to-prisoners-start-page/.github/actions/clean-ecr

GOV.UK start page for Money to Prisoners

5/10
camunda/infra-global-github-actions/fossa/setup

camunda/infra-global-github-actions/fossa/setup

Small Github Actions maintained by Infra team and used by other teams inside Camunda

6/10