github-actions

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing YAML templates and best practices for GitHub Actions configuration.
  • [SAFE]: Promotes secure secrets management by instructing users to use repository secrets instead of hardcoding credentials in workflow files.
  • [SAFE]: References standard, well-known, and official GitHub Actions such as actions/checkout, actions/setup-node, and actions/setup-python for repository operations.
  • [SAFE]: Includes an anti-patterns section that correctly advises against common security pitfalls like storing secrets in .env files or using mutable version tags like @master.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 03:24 PM
Security Audit — agent-trust-hub — github-actions