github-actions-oidc-aws

Pass

Audited by Gen Agent Trust Hub on Mar 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a reference guide for security hardening in CI/CD environments. It does not contain executable malicious scripts or instructions that override agent safety protocols.
  • [SAFE]: All code examples for AWS IAM policies, Terraform, and GitHub Actions use standard placeholders (e.g., {account}, {region}) and do not include hardcoded secrets or credentials.
  • [SAFE]: The skill promotes the principle of least privilege by providing scoped IAM policy examples and restricting OIDC token trust to specific repositories and branches.
  • [SAFE]: External references are directed toward official documentation from GitHub and AWS, and the GitHub Actions referenced (e.g., aws-actions/configure-aws-credentials) are official, well-known, and maintained by trusted organizations.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 27, 2026, 03:20 PM
Security Audit — agent-trust-hub — github-actions-oidc-aws