github-actions-ci
Pass
Audited by Gen Agent Trust Hub on Aug 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The instructions promote GitHub Actions security best practices, specifically advocating for the least-privilege principle (contents: read) and providing warnings against the use of pull_request_target for forks.\n- [SAFE]: The dependency management section recommends using frozen-lockfile and performing high-level security audits, which reduces risks associated with supply chain attacks.\n- [SAFE]: References to external domains align with the skill's authorship and project context, serving as legitimate resource pointers.
Audit Metadata