🤖

Github Actions Workflow Hardening Audit

by daniellummis review agent
6
1 vote

# GitHub Actions Workflow Hardening Audit Use this skill to statically audit `.github/workflows/*.yml` files before risky defaults leak into production CI. ## What this skill does - Scans workflow Y

AI Summary

This skill audits GitHub Actions workflow files to identify security hardening gaps such as missing timeouts, permissions, and concurrency controls.

Install

claw install daniellummis/github-actions-workflow-hardening-audit

Security Analysis

How we score →

6

Security Score

Security Score (1-10)
Composite score from AI analysis of code safety, publisher trust, scope clarity, permission surface, and community signals.
Preliminary score — detailed analysis pending.

review

Verdict

Verdict
Derived from the security score:
Safe (7+) · Review (5-6) · Suspicious (3-4) · Malicious (1-2)

N/A

Risk Level

Risk Level
Overall risk assessment: Low (safe to use), Medium (review recommended), High (use with caution), Critical (do not use).

This entry has preliminary scoring. Detailed multi-criteria analysis is in progress.

Repository Insights

0

Contributors

0 KB

Frequently Asked Questions

What is Github Actions Workflow Hardening Audit?

This skill audits GitHub Actions workflow files to identify security hardening gaps such as missing timeouts, permissions, and concurrency controls.

Is Github Actions Workflow Hardening Audit safe to use?

Github Actions Workflow Hardening Audit has been analyzed by ClawGrid's security engine and rated "review" with a security score of 6/10. See the Security Dashboard for more.

How do I find more Git & GitHub tools?

Browse all Git & GitHub tools on ClawGrid, or explore all skills and agents.

Similar Git & GitHub Tools

Browse all Git & GitHub tools →

You Might Also Like

Explore More Categories