StepSecurity Logo
StepSecurity
LoginStart free

Assess the risk of third-party GitHub Actions

Actions

Assess all the actions

pytorch/text/test-infra/.github/actions/setup-binary-upload

pytorch/text/test-infra/.github/actions/setup-binary-upload

Models, data loaders and abstractions for language processing, powered by PyTorch

2/10
jjchange10/test-actions/.github/actions/fill

jjchange10/test-actions/.github/actions/fill

2/10
aerospike/aerospike-client-csharp/.github/actions/run-ee-server

aerospike/aerospike-client-csharp/.github/actions/run-ee-server

Aerospike C# Client Library

6/10
ministryofjustice/hmpps-github-shared-actions/.github/actions/slack_release_results

ministryofjustice/hmpps-github-shared-actions/.github/actions/slack_release_results

Shared actions for Github workflows to use - PUT NO WORKFLOWS IN HERE! (bootstrapped 2026-03-30)

4/10
supercharge/redis-github-action

supercharge/redis-github-action

Use Redis in GitHub Actions

5/10
check-spelling/check-spelling

check-spelling/check-spelling

Spelling checker action to check spelling in repositories / pull requests / commits

8/10
natescherer/changelog-management-action

natescherer/changelog-management-action

A GitHub action to parse and update changelogs in Keep a Changelog 1.0.0 format; built on the ChangelogManagement PowerShell module.

5/10
yoheimuta/action-protolint

yoheimuta/action-protolint

Run protolint with reviewdog

3/10
tomhjp/gh-action-jira-create

tomhjp/gh-action-jira-create

GitHub action to create Jira tickets with customisable fields

3/10
openzeppelin/openzeppelin-community-contracts/.github/actions/image

openzeppelin/openzeppelin-community-contracts/.github/actions/image

Solidity library of smart contracts from the OpenZeppelin Community

4/10
Maintained action available
phips28/gh-action-bump-version

phips28/gh-action-bump-version

GitHub Action for automated npm version bump.

4/10
Maintained action available
huntridge-labs/argus/.github/actions/scanner-bandit

huntridge-labs/argus/.github/actions/scanner-bandit

Argus brings β€œa hundred eyes” to your project, combining leading open source security tools into a scalable, automated, continuous security pipeline.

5/10
Maintained action available
deepcode-ai/codeql/ql/.github/actions/fetch-codeql

deepcode-ai/codeql/ql/.github/actions/fetch-codeql

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

2/10
yonasbsd/surrealdb/.github/actions/setup-environment

yonasbsd/surrealdb/.github/actions/setup-environment

A scalable, distributed, collaborative, document-graph database, for the realtime web

4/10
Maintained action available
neondatabase/neon-js/.github/actions/setup-jfrog-npm

neondatabase/neon-js/.github/actions/setup-jfrog-npm

An Javascript client for Neon Auth and Neon Data API

5/10
Maintained action available
jonathancombs782/bitcoin/.github/actions/save-caches

jonathancombs782/bitcoin/.github/actions/save-caches

Bitcoin Core integration/staging tree

6/10
approved-3rd-party-actions/commit-message-checker

approved-3rd-party-actions/commit-message-checker

GitHub Action that checks commit messages of pushes and pull request against a regex pattern

2/10
grafana/grafana/.github/actions/changelog

grafana/grafana/.github/actions/changelog

The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.

4/10
Maintained action available
hadolint/hadolint-action

hadolint/hadolint-action

GitHub action for Hadolint, A Dockerfile linting tool

6/10
surrealdb/rocksdb/.github/actions/pre-steps

surrealdb/rocksdb/.github/actions/pre-steps

A library that provides an embeddable, persistent key-value store for fast storage.

4/10