shared-tooling-changesets
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill provides legitimate documentation and workflow examples for package management.
- [EXTERNAL_DOWNLOADS]: References official packages from the
@changesetsorganization and trusted GitHub Actions (e.g.,actions/checkout,actions/setup-node). - [DATA_EXFILTRATION]: Follows security best practices by instructing users to manage sensitive credentials via GitHub Action secrets (
secrets.NPM_TOKEN,secrets.GITHUB_TOKEN).
Audit Metadata