create-github-action-workflow-specification

Pass

Audited by Gen Agent Trust Hub on Mar 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary purpose is the generation of static documentation for GitHub Actions workflows, which involves reading repo configuration and writing to a specific /spec/ directory.
  • [SAFE]: No network activity was detected; the skill does not use tools like curl, wget, or fetch to exfiltrate data or download external scripts.
  • [SAFE]: The skill does not access sensitive local files such as SSH keys, cloud provider credentials, or environment secret files.
  • [SAFE]: No obfuscation, remote code execution, or privilege escalation patterns were found in the instructions or metadata.
  • [SAFE]: The skill provides a template for security requirements (SEC-001) and quality gates, encouraging documentation of security practices without violating any safety constraints.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 30, 2026, 12:20 AM
Security Audit — agent-trust-hub — create-github-action-workflow-specification