Skip to content
@step-security

StepSecurity

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. harden-runner harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in re…

    TypeScript 836 72

  2. secure-repo secure-repo Public

    Orchestrate GitHub Actions Security

    Go 289 48

  3. wait-for-secrets wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    TypeScript 287 20

  4. github-actions-goat github-actions-goat Public

    GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 475 283

Repositories

Showing 10 of 107 repositories
  • secrets-sync-action Public

    A Github Action that can sync secrets from one repository to many others. Secure drop-in replacement for jpoehnelt/secrets-sync-action.

    step-security/secrets-sync-action’s past year of commit activity
    TypeScript 0 Apache-2.0 1 1 12 Updated Jun 25, 2025
  • runs-on-cache Public

    Shockingly faster GitHub Action cache with S3 backend. Secure drop-in replacement for runs-on/cache.

    step-security/runs-on-cache’s past year of commit activity
    TypeScript 2 MIT 1 1 13 Updated Jun 25, 2025
  • retry Public

    Retries a GitHub Action step on failure or timeout. Secure drop-in replacement for nick-fields/retry.

    step-security/retry’s past year of commit activity
    TypeScript 1 MIT 4 1 10 Updated Jun 25, 2025
  • pr-labeler-action Public

    Automatically labels your PRs based on branch name patterns like feature/* or fix/*. Secure drop-in replacement for TimonVS/pr-labeler-action.

    step-security/pr-labeler-action’s past year of commit activity
    TypeScript 2 MIT 3 1 10 Updated Jun 25, 2025
  • github-actions-slack Public

    Github Action for sending message (and reactions/threads/update/blocks) to Slack - With support for Slack's optional arguments. Secure drop-in replacement for archive/github-actions-slack.

    step-security/github-actions-slack’s past year of commit activity
    JavaScript 0 MIT 1 1 10 Updated Jun 25, 2025
  • action-send-mail Public

    A GitHub Action to send an email to multiple recipients. Secure drop-in replacement for dawidd6/action-send-mail.

    step-security/action-send-mail’s past year of commit activity
    JavaScript 0 MIT 1 1 13 Updated Jun 25, 2025
  • release-notes-generator-action Public

    Action to auto generate a release note based on your events. Secure drop-in replacement for Decathlon/release-notes-generator-action.

    step-security/release-notes-generator-action’s past year of commit activity
    Shell 0 Apache-2.0 1 1 8 Updated Jun 25, 2025
  • setup-vals Public

    Github Action for installing vals (https://github.com/helmfile/vals). Secure drop-in replacement for jkroepke/setup-vals.

    step-security/setup-vals’s past year of commit activity
    TypeScript 0 MIT 1 1 12 Updated Jun 25, 2025
  • action-gh-release Public

    GitHub Action for creating GitHub Releases. Secure drop-in replacement for softprops/action-gh-release.

    step-security/action-gh-release’s past year of commit activity
    TypeScript 0 MIT 1 1 2 Updated Jun 25, 2025
  • s3-actions-cache Public

    Cache to S3 storage with official actions/cache@v2 fallback. Secure drop-in replacement for tespkg/actions-cache.

    step-security/s3-actions-cache’s past year of commit activity
    TypeScript 0 MIT 2 1 12 Updated Jun 25, 2025

Top languages

Loading…

Most used topics

Loading…