github-actions
Pass
Audited by Gen Agent Trust Hub on Apr 4, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill acts as a documentation resource, providing instructions and templates for GitHub Actions. It does not include executable code or commands for the agent to run.\n- [EXTERNAL_DOWNLOADS]: Examples in the skill reference common GitHub Actions from established sources, including the official
actionsrepository and thedockerorganization.\n- [CREDENTIALS_UNSAFE]: The skill provides guidance on using secrets in workflows, explicitly recommending the use of GitHub Secrets and warning against hardcoding credentials in files.\n- [SAFE]: The skill includes a dedicated 'Guidelines' section that promotes security best practices, such as version pinning and the use of concurrency controls.
Audit Metadata