github-actions

Pass

Audited by Socket on May 5, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
May 5, 2026, 09:42 PM
Package URL
pkg:socket/skills-sh/AndreaCovelli%2Fmy-skills%2Fgithub-actions%2F@2b3a77e27e422a0547ee3f28fe5f605b099b969f
Security Audit — socket — github-actions