Skip to content
@step-security

StepSecurity

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. harden-runner harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in re…

    TypeScript 681 59

  2. secure-repo secure-repo Public

    Orchestrate GitHub Actions Security

    Go 275 41

  3. wait-for-secrets wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    TypeScript 283 18

  4. github-actions-goat github-actions-goat Public

    GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 457 268

Repositories

Showing 10 of 66 repositories
  • harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

    step-security/harden-runner’s past year of commit activity
    TypeScript 681 Apache-2.0 59 20 11 Updated Mar 9, 2025
  • wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    step-security/wait-for-secrets’s past year of commit activity
    TypeScript 283 Apache-2.0 18 3 15 Updated Mar 7, 2025
  • action-setup Public

    Install pnpm package manager

    step-security/action-setup’s past year of commit activity
    TypeScript 0 MIT 1 0 11 Updated Mar 7, 2025
  • action-semantic-pull-request Public

    GitHub Action that ensures that your PR title matches the Conventional Commits spec

    step-security/action-semantic-pull-request’s past year of commit activity
    JavaScript 1 MIT 2 1 10 Updated Mar 7, 2025
  • change-string-case-action Public

    Github Action: Make a string lowercase, uppercase, or capitalized

    step-security/change-string-case-action’s past year of commit activity
    JavaScript 0 ISC 1 1 8 Updated Mar 7, 2025
  • rust-cache Public

    A GitHub Action that implements smart caching for rust/cargo projects

    step-security/rust-cache’s past year of commit activity
    TypeScript 0 LGPL-3.0 1 1 15 Updated Mar 7, 2025
  • workflow-conclusion-action Public

    GitHub action to get workflow conclusion.

    step-security/workflow-conclusion-action’s past year of commit activity
    TypeScript 2 MIT 1 0 10 Updated Mar 7, 2025
  • reusable-workflows Public

    StepSecurity Reusable Workflows

    step-security/reusable-workflows’s past year of commit activity
    0 MIT 1 0 6 Updated Mar 7, 2025
  • step-security/action-semantic-demo’s past year of commit activity
    JavaScript 0 MIT 0 0 24 Updated Mar 7, 2025
  • retry Public

    Retries a GitHub Action step on failure or timeout

    step-security/retry’s past year of commit activity
    TypeScript 1 MIT 2 1 10 Updated Mar 7, 2025

Top languages

Loading…

Most used topics

Loading…