github-actions

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides educational content and command templates for GitHub Actions development and debugging.
  • [SAFE]: It explicitly promotes security best practices, such as masking secrets, setting least-privilege permissions, and pinning action versions to specific SHAs.
  • [SAFE]: External references to the GitHub CLI (gh) and the local execution tool act (nektos/act) are standard industry utilities for the intended use case.
  • [SAFE]: The documentation includes specific warnings against dangerous configurations, such as the potential for Remote Code Execution (RCE) when using pull_request_target improperly.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 12:07 PM
Security Audit — agent-trust-hub — github-actions