agentic-actions-auditor

Category: Tools & Productivity | Uploader: trailofbitstrailofbits | Downloads: 0 | Version: v1.0(Latest)

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where attacker-controlled input reaches AI agents running in CI/CD pipelines, including env var intermediary patterns, direct expression injection, dangerous sandbox configurations, and wildcard user allowlists. Use when reviewing workflow files that invoke AI coding agents, auditing CI/CD pipeline security for prompt injection risks, or evaluating agentic action configurations.

Changelog: Source: GitHub https://github.com/trailofbits/skills

Directory Structure

Current level: plugins/agentic-actions-auditor/skills/agentic-actions-auditor/

SKILL.md

Login to download/like/favorite ❤ 3.4K | ★ 0
Comments 0

Please login before commenting.

No comments yet. Be the first one!