create-github-action-workflow-specification
Pass
Audited by Gen Agent Trust Hub on Mar 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary purpose is the generation of static documentation for GitHub Actions workflows, which involves reading repo configuration and writing to a specific
/spec/directory. - [SAFE]: No network activity was detected; the skill does not use tools like curl, wget, or fetch to exfiltrate data or download external scripts.
- [SAFE]: The skill does not access sensitive local files such as SSH keys, cloud provider credentials, or environment secret files.
- [SAFE]: No obfuscation, remote code execution, or privilege escalation patterns were found in the instructions or metadata.
- [SAFE]: The skill provides a template for security requirements (SEC-001) and quality gates, encouraging documentation of security practices without violating any safety constraints.
Audit Metadata