StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

lfreleng-actions/python-project-name-action

lfreleng-actions/python-project-name-action

Extracts Python project name and derives the package name

4/10
Maintained action available
intel/cve-bin-tool-action

intel/cve-bin-tool-action

Known vulnerability scanning for your GitHub repository using CVE Binary Tool. This Action can scan binaries, component lists and SBOMs for known vulnerabilities and CVEs. It can generate SBOM component lists as well as reports in the Security Tab and in HTML/JSON/PDF format.

5/10
yonasBSD/neon/.github/actions/allure-report-store

yonasBSD/neon/.github/actions/allure-report-store

Neon: Serverless Postgres. We separated storage and compute to offer autoscaling, branching, and bottomless storage.

2/10
AlexanderWert/action-slack

AlexanderWert/action-slack

🚀 GitHub Action that sends a Slack notification.

2/10
step-security/clippy-action

step-security/clippy-action

🐻‍❄️📦 GitHub action to run Clippy, an up-to-date and modern version of actions-rs/clippy. Secure drop-in replacement for auguwu/clippy-action.

10/10
Maintained by StepSecurity
envoyproxy/toolshed/gh-actions/github/pr

envoyproxy/toolshed/gh-actions/github/pr

7/10
razorpay/checkout-action

razorpay/checkout-action

Action for checking out a repo

2/10
RafikFarhad/push-to-gcr-github-action

RafikFarhad/push-to-gcr-github-action

An action that build docker image and push to Google Cloud Registry and Google Artifact Registry.

4/10
snyk/actions/gradle

snyk/actions/gradle

A set of GitHub actions for checking your projects for vulnerabilities.

4/10
bullfrogsec/bullfrog

bullfrogsec/bullfrog

Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows

7/10
fish-actions/fisher

fish-actions/fisher

Install Fisher and other Fish plugins

3/10
ljharb/actions/npm/install

ljharb/actions/npm/install

GitHub actions I use for CI.

4/10
grafana/grafana/.grafana-main/.github/actions/changelog

grafana/grafana/.grafana-main/.github/actions/changelog

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

4/10
Maintained action available
madrapps/jacoco-report

madrapps/jacoco-report

Github action that publishes the JaCoCo report as a comment in the Pull Request

6/10
theupdateframework/tuf-conformance

theupdateframework/tuf-conformance

TUF client conformance test suite

8/10
Lendable/changed-files

Lendable/changed-files

5/10
oss-review-toolkit/ort-ci-github-action

oss-review-toolkit/ort-ci-github-action

Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs

5/10
wolfi-dev/actions/install-wolfictl

wolfi-dev/actions/install-wolfictl

A collection of reusable Github Actions workflows.

8/10
msys2/setup-msys2

msys2/setup-msys2

GitHub Action to setup MSYS2

7/10
kishaningithub/setup-python-amazon-linux

kishaningithub/setup-python-amazon-linux

setup-python action for amazon linux self hosted runners

4/10
Maintained action available