github-actions

Pass

Audited by Socket on Jun 24, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Jun 24, 2026, 08:21 AM
Package URL
pkg:socket/skills-sh/openhands%2Fskills%2Fgithub-actions%2F@5d6dd181457a353ff44b8c1a3d749f5057c3b3e03c6101947ba6e1926b2360d3
Security Audit — socket — github-actions