StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

Reality2byte/codeql-action/analyze

Reality2byte/codeql-action/analyze

Actions for running CodeQL analysis

6/10
step-security/launchdarkly-gha-flags/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

step-security/launchdarkly-gha-flags/__BUILDER_CHECKOUT_DIR__/.github/actions/secure-download-artifact

Evaluate LaunchDarkly flags in your GitHub Action workflow. Secure drop-in replacement for launchdarkly/gha-flags.

10/10
noirbizarre/need-checks

noirbizarre/need-checks

Expect or wait status checks for a commit

2/10
bitwarden/android/.github/actions/log-inputs

bitwarden/android/.github/actions/log-inputs

Bitwarden mobile apps (Password Manager and Authenticator) for Android.

6/10
actions-x/commit

actions-x/commit

5/10
check-spelling-sandbox/dependency-review-action

check-spelling-sandbox/dependency-review-action

A GitHub Action for detecting vulnerable dependencies in your PRs

5/10
d4rkfella/actions/apko-snapshot

d4rkfella/actions/apko-snapshot

5/10
Maintained action available
yonasBSD/surrealdb/.github/actions/docker-build

yonasBSD/surrealdb/.github/actions/docker-build

A scalable, distributed, collaborative, document-graph database, for the realtime web

4/10
Maintained action available
Accenture/AutoFixture.XUnit2.AutoMock/.github/actions/determine-next-version

Accenture/AutoFixture.XUnit2.AutoMock/.github/actions/determine-next-version

Autofixture auto-mocking for XUnit2 using a mocking library of your choice.

5/10
lunarmodules/luacheck

lunarmodules/luacheck

A tool for linting and static analysis of Lua code.

6/10
OZI-Project/draft

OZI-Project/draft

OZI release draft workflow.

6/10
envoyproxy/toolshed/actions/github/remnt

envoyproxy/toolshed/actions/github/remnt

7/10
yonasBSD/iggy/.github/actions/rust/post-merge

yonasBSD/iggy/.github/actions/rust/post-merge

Iggy is the persistent message streaming platform written in Rust, supporting QUIC, TCP and HTTP transport protocols, capable of processing millions of messages per second.

4/10
Maintained action available
Raj-StepSecurity/jest-coverage-action-demo

Raj-StepSecurity/jest-coverage-action-demo

5/10
docker-practice/actions-setup-docker

docker-practice/actions-setup-docker

Set up your GitHub Actions workflow with a specific version(18.09,19.03,20.10,nightly) of Docker ON Linux/macOS

3/10
toolmantim/release-drafter

toolmantim/release-drafter

Drafts your next release notes as pull requests are merged into master.

4/10
Maintained action available
github/evergreen

github/evergreen

GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.yaml file

7/10
wolfi-dev/actions/wolfictl-lint

wolfi-dev/actions/wolfictl-lint

A collection of reusable Github Actions workflows.

8/10
Harvester57/docker-guacamole/.github/actions/apt-faster

Harvester57/docker-guacamole/.github/actions/apt-faster

4/10
Maintained action available
pkl-community/setup-pkl

pkl-community/setup-pkl

2/10