Skip to content
@step-security

StepSecurity

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. harden-runner harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in re…

    TypeScript 675 55

  2. secure-repo secure-repo Public

    Orchestrate GitHub Actions Security

    Go 273 41

  3. wait-for-secrets wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    TypeScript 282 18

  4. github-actions-goat github-actions-goat Public

    GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 456 266

Repositories

Showing 10 of 66 repositories
  • wait-for-secrets Public

    Publish from GitHub Actions using multi-factor authentication

    step-security/wait-for-secrets’s past year of commit activity
    TypeScript 282 Apache-2.0 18 3 14 Updated Feb 21, 2025
  • harden-runner Public

    Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

    step-security/harden-runner’s past year of commit activity
    TypeScript 675 Apache-2.0 55 22 11 Updated Feb 21, 2025
  • close-milestone Public

    A Github action to remove a milestone by the milestone's name

    step-security/close-milestone’s past year of commit activity
    JavaScript 0 GPL-3.0 1 1 9 Updated Feb 21, 2025
  • change-string-case-action Public

    Github Action: Make a string lowercase, uppercase, or capitalized

    step-security/change-string-case-action’s past year of commit activity
    JavaScript 0 ISC 1 1 8 Updated Feb 21, 2025
  • paths-filter Public

    Conditionally run actions based on files modified by PR, feature branch or pushed commits

    step-security/paths-filter’s past year of commit activity
    TypeScript 0 MIT 1 0 12 Updated Feb 21, 2025
  • foundry-toolchain Public

    GitHub action to install Foundry

    step-security/foundry-toolchain’s past year of commit activity
    JavaScript 0 Apache-2.0 1 0 10 Updated Feb 21, 2025
  • vitest-coverage-report-action Public

    A GitHub Action to report vitest test coverage results

    step-security/vitest-coverage-report-action’s past year of commit activity
    TypeScript 0 MIT 1 0 9 Updated Feb 21, 2025
  • action-semantic-pull-request Public

    GitHub Action that ensures that your PR title matches the Conventional Commits spec

    step-security/action-semantic-pull-request’s past year of commit activity
    JavaScript 1 MIT 2 1 11 Updated Feb 21, 2025
  • jest-coverage-report-action Public

    Track your code coverage in every pull request.

    step-security/jest-coverage-report-action’s past year of commit activity
    TypeScript 0 MIT 1 1 13 Updated Feb 21, 2025
  • setup-zig Public

    Install a Zig compiler for usage in GitHub Actions workflows.

    step-security/setup-zig’s past year of commit activity
    JavaScript 0 MIT 1 0 7 Updated Feb 21, 2025