StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

clementtsang/cargo-action

clementtsang/cargo-action

A simple GitHub Action to invoke cargo/cross.

4/10
nvidia/infra-controller/.github/actions/setup-mkosi-environment

nvidia/infra-controller/.github/actions/setup-mkosi-environment

NVIDIA Infra Controller - Hardware Lifecycle Management and multitenant networking

6/10
telegramdesktop/winget-releaser

telegramdesktop/winget-releaser

Publish new releases of your application to the Windows Package Manager easily.

2/10
sett-and-hive/sarif-to-issue-action

sett-and-hive/sarif-to-issue-action

A GitHub action for @security-alert/sarif-to-issue

6/10
dcarbone/install-yq-action

dcarbone/install-yq-action

Install YQ into the action tool cache without needing nodejs

4/10
huntridge-labs/argus/.github/actions/scanner-zap-summary

huntridge-labs/argus/.github/actions/scanner-zap-summary

Argus brings β€œa hundred eyes” to your project, combining leading open source security tools into a scalable, automated, continuous security pipeline.

5/10
Maintained action available
actions/create-release

actions/create-release

An Action to create releases via the GitHub Release API

6/10
grafana/k6-extension-actions/fill

grafana/k6-extension-actions/fill

Reusable composite GitHub actions to support k6 extension development.

5/10
chainguard-actions/google-github-actions-auth

chainguard-actions/google-github-actions-auth

2/10
sonarsource/gh-action_setup-cloudflare-warp

sonarsource/gh-action_setup-cloudflare-warp

Setup Cloudflare WARP with device posture check and inspection certificate for secure network access.

4/10
honeycombio/oss-management-actions/labels

honeycombio/oss-management-actions/labels

A set of GitHub Actions to apply a common set of OSS management workflows to Honeycomb projects.

4/10
aquasecurity/trivy-action

aquasecurity/trivy-action

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

8/10
envoyproxy/toolshed/actions/github/run

envoyproxy/toolshed/actions/github/run

6/10
tryghost/actions/actions/slack-build

tryghost/actions/actions/slack-build

GitHub Actions to power Ghost development

6/10
dagster-io/dagster-cloud-action

dagster-io/dagster-cloud-action

5/10
agogear/chatgpt-pr-review

agogear/chatgpt-pr-review

2/10
jfagoagas/prowler/.github/actions/trivy-scan

jfagoagas/prowler/.github/actions/trivy-scan

Prowler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains all CIS controls and many more additional checks that help on GDPR, HIPAA and other security frameworks.

3/10
goreleaser/goreleaser

goreleaser/goreleaser

Release engineering, simplified

9/10
jwalton/gh-ecr-push

jwalton/gh-ecr-push

GitHub Action to push a docker image to Amazon ECR.

0/10
wdzeng/edge-addon

wdzeng/edge-addon

GitHub Action for publishing extension to Microsoft Edge Add-on!

2/10
Maintained action available