github-actions-script-injection
Fail
Audited by Socket on Sep 22, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
SUSPICIOUS/HIGH-RISK skill. While framed as a GitHub Actions security audit aid, it materially equips the agent to perform offensive exploitation, secret exfiltration, stealthy validation, and escalation against CI environments. The main risk is not mere workflow analysis but instructions to weaponize findings and route stolen data to attacker-controlled endpoints.
Confidence: 95%Severity: 92%
Audit Metadata