github-actions-oidc-aws
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference guide for security hardening in CI/CD environments. It does not contain executable malicious scripts or instructions that override agent safety protocols.
- [SAFE]: All code examples for AWS IAM policies, Terraform, and GitHub Actions use standard placeholders (e.g., {account}, {region}) and do not include hardcoded secrets or credentials.
- [SAFE]: The skill promotes the principle of least privilege by providing scoped IAM policy examples and restricting OIDC token trust to specific repositories and branches.
- [SAFE]: External references are directed toward official documentation from GitHub and AWS, and the GitHub Actions referenced (e.g.,
aws-actions/configure-aws-credentials) are official, well-known, and maintained by trusted organizations.
Audit Metadata