agentic-actions-auditor

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
references/vector-a-env-var-intermediary.md

This fragment describes a plausible stealthy GitHub Actions workflow risk: attacker-controlled GitHub event content is assigned into env vars via ${{ github.event.* }} and then referenced by name inside an AI action prompt, causing the AI runtime to ingest untrusted data without obvious ${{ ... }} usage in the prompt field. While the fragment itself is not malicious code, affected workflows using AI tooling that evaluates/reads env vars based on prompt instructions are at elevated risk of prompt injection and any downstream actions the AI can perform.

Confidence: 62%Severity: 63%
Audit Metadata
Analyzed At
Sep 17, 2026, 09:34 PM
Package URL
pkg:socket/skills-sh/trailofbits%2Fskills%2Fagentic-actions-auditor%2F@4c70c4bffad8629610ef6d7400692b182dbf4aa6e2f976e8112185d461086d3b
Security Audit — socket — agentic-actions-auditor