NYC

github-actions-templates

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE] (SAFE): The skill contains only Markdown documentation and YAML templates for GitHub Actions workflows. There are no scripts (Python, JavaScript, etc.) or binaries included that could execute in the agent's environment.
  • [EXTERNAL_DOWNLOADS] (LOW): The templates reference external GitHub Actions from reputable sources (e.g., actions/checkout, aws-actions, docker). While some templates use mutable tags like '@master' (specifically for Trivy and Snyk), which is a minor best-practice violation, it does not pose a direct threat to the AI agent itself.
  • [SAFE] (SAFE): No malicious patterns such as prompt injection, obfuscation, or data exfiltration attempts were detected. The content is purely instructional and focused on CI/CD automation.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:56 PM