Skip to content
@step-security

StepSecurity

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. harden-runner harden-runner Public

    Harden-Runner secures CI/CD workflows by controlling network access and monitoring activities on GitHub-hosted and self-hosted runners

    TypeScript 656 53

  2. secure-repo secure-repo Public

    Orchestrate GitHub Actions Security

    Go 270 41

  3. wait-for-secrets wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    TypeScript 279 18

  4. github-actions-goat github-actions-goat Public

    GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 454 266

Repositories

Showing 10 of 66 repositories
  • rust-cache Public

    A GitHub Action that implements smart caching for rust/cargo projects

    step-security/rust-cache’s past year of commit activity
    TypeScript 0 LGPL-3.0 1 0 16 Updated Feb 4, 2025
  • arm-int-tests Public
    step-security/arm-int-tests’s past year of commit activity
    JavaScript 0 1 2,091 7 Updated Feb 4, 2025
  • secure-repo Public

    Orchestrate GitHub Actions Security

    step-security/secure-repo’s past year of commit activity
    Go 270 AGPL-3.0 41 69 485 Updated Feb 4, 2025
  • vitest-coverage-report-action Public

    A GitHub Action to report vitest test coverage results

    step-security/vitest-coverage-report-action’s past year of commit activity
    TypeScript 0 MIT 1 0 9 Updated Feb 4, 2025
  • retry Public

    Retries a GitHub Action step on failure or timeout

    step-security/retry’s past year of commit activity
    TypeScript 1 MIT 2 0 9 Updated Feb 4, 2025
  • pr-labeler-action Public

    Automatically labels your PRs based on branch name patterns like feature/* or fix/*

    step-security/pr-labeler-action’s past year of commit activity
    TypeScript 2 MIT 1 0 9 Updated Feb 4, 2025
  • jest-coverage-report-action Public

    Track your code coverage in every pull request.

    step-security/jest-coverage-report-action’s past year of commit activity
    TypeScript 0 MIT 1 0 12 Updated Feb 4, 2025
  • run-vcpkg Public

    The GitHub Action to setup vcpkg for your C++ based projects. Stores built ports using Binary Caching backed onto GH Cache.

    step-security/run-vcpkg’s past year of commit activity
    TypeScript 0 MIT 1 0 10 Updated Feb 4, 2025
  • ssh-key-action Public

    GitHub Action that installs SSH key to .ssh

    step-security/ssh-key-action’s past year of commit activity
    TypeScript 0 MIT 1 0 10 Updated Feb 4, 2025
  • skip-duplicate-actions Public

    Save time and cost when using GitHub Actions

    step-security/skip-duplicate-actions’s past year of commit activity
    TypeScript 2 MIT 1 0 11 Updated Feb 4, 2025