github-actions-templates
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWNO_CODEEXTERNAL_DOWNLOADS
Full Analysis
- [NO_CODE] (SAFE): The skill consists entirely of markdown documentation and YAML workflow templates. It does not include any executable scripts or active logic.
- [EXTERNAL_DOWNLOADS] (LOW): The workflow templates reference external GitHub Actions (e.g., aquasecurity/trivy-action@master, snyk/actions/node@master). Using @master instead of a specific version tag is a minor security best practice violation.
Audit Metadata