Skip to main content

GitHub Actions Security Auditor

by Security Team

Audit GitHub Actions workflows for security vulnerabilities in AI agent integrations including supply chain attacks.

About This Skill

Security auditing skill specifically designed for GitHub Actions workflows that integrate AI agents. Detects attack vectors where malicious actors could exploit AI agent permissions, identifies supply chain vulnerabilities in action dependencies, and checks for credential exposure risks. Covers Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference integrations.

How to Install

# Clone or download the skill to your skills directory git clone https://github.com/alirezarezvani/claude-skills ~/.claude/skills/github-actions-security-auditor

Or download the SKILL.md file directly and place it in your project's .claude/skills/ directory.

Tags

github-actionssecurityci-cdauditsupply-chain