Skip to content
@step-security

StepSecurity

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. harden-runner harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in re…

    TypeScript 952 83

  2. secure-repo secure-repo Public

    Orchestrate GitHub Actions Security

    Go 303 51

  3. wait-for-secrets wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    TypeScript 295 20

  4. github-actions-goat github-actions-goat Public

    GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 493 304

Repositories

Showing 10 of 227 repositories
  • mage-action Public

    GitHub Action for Mage. Secure drop-in replacement for magefile/mage-action.

    step-security/mage-action’s past year of commit activity
    0 0 0 1 Updated Feb 2, 2026
  • gitleaks-action Public

    Protect your secrets using Gitleaks-Action. Secure drop-in replacement for gitleaks/gitleaks-action.

    step-security/gitleaks-action’s past year of commit activity
    TypeScript 0 MIT 1 0 5 Updated Feb 2, 2026
  • setup-xcode Public

    Set up your GitHub Actions workflow with a specific version of Xcode. Secure drop-in replacement for maxim-lobanov/setup-xcode.

    step-security/setup-xcode’s past year of commit activity
    TypeScript 0 MIT 1 1 10 Updated Feb 2, 2026
  • helm-gh-pages Public

    A GitHub Action for publishing Helm charts to Github Pages. Secure drop-in replacement for stefanprodan/helm-gh-pages.

    step-security/helm-gh-pages’s past year of commit activity
    Shell 0 Apache-2.0 1 1 6 Updated Feb 2, 2026
  • release-on-push-action Public

    Github Action to create a git tag + release when pushed to master. Secure drop-in replacement for rymndhng/release-on-push-action.

    step-security/release-on-push-action’s past year of commit activity
    Clojure 0 MIT 1 1 9 Updated Feb 2, 2026
  • release-notes-generator-action Public

    Action to auto generate a release note based on your events. Secure drop-in replacement for Decathlon/release-notes-generator-action.

    step-security/release-notes-generator-action’s past year of commit activity
    Shell 0 Apache-2.0 1 1 7 Updated Feb 2, 2026
  • action-remove-labels Public

    🏷️ GitHub Action to remove labels. Secure drop-in replacement for actions-ecosystem/action-remove-labels.

    step-security/action-remove-labels’s past year of commit activity
    TypeScript 0 Apache-2.0 1 1 9 Updated Feb 2, 2026
  • upload-cloud-storage Public

    A GitHub Action for uploading files to a Google Cloud Storage (GCS) bucket. Secure drop-in replacement for google-github-actions/upload-cloud-storage.

    step-security/upload-cloud-storage’s past year of commit activity
    TypeScript 0 Apache-2.0 1 1 10 Updated Feb 2, 2026
  • vitest-coverage-report-action Public

    A GitHub Action to report vitest test coverage results. Secure drop-in replacement for davelosert/vitest-coverage-report-action.

    step-security/vitest-coverage-report-action’s past year of commit activity
    TypeScript 0 MIT 1 1 11 Updated Feb 2, 2026
  • actions-gh-pages Public

    GitHub Actions for GitHub Pages 🚀 Deploy static files and publish your site easily. Static-Site-Generators-friendly. Secure drop-in replacement for peaceiris/actions-gh-pages.

    step-security/actions-gh-pages’s past year of commit activity
    0 0 0 1 Updated Feb 2, 2026

Top languages

Loading…

Most used topics

Loading…