Skip to content
SkillsBundleby SANTACONCHA
ES EN

Individual AI skill · AI for Inteligencia e Investigación

agentic-actions-auditor

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where attacker-controlled input reaches AI agents running in CI/CD pipelines, including env var intermediary patterns, direct expression injection, dangerous sandbox configurations, and wildcard user allowlists. Use when reviewing workflow files that invoke AI coding agents, auditing CI/CD pipeline security for prompt injection risks, or evaluating agentic action configurations.

Source content · review pending Source language: EN

Choose how you use AI

Agent format only: this skill needs tools or scripts that web projects cannot execute.

Free ZIP · One canonical method · Usage example · Installation guide · Licence notices

From file to useful result

How to ask with this skill installed

Installing the skill gives your AI a method. Your request still has to provide the case-specific facts, constraints and expected output.

1Name the real task

Describe the decision or deliverable, not just the topic.

2Provide the evidence

Add source material, audience, limits and known facts.

3Define done

Set format, quality criteria and checks.

Adaptable starting prompt Replace the brackets with your case

When to use it

  • Auditing a repository's GitHub Actions workflows for AI agent security
  • Reviewing CI/CD configurations that invoke Claude Code Action, Gemini CLI, or OpenAI Codex
  • Checking whether attacker-controlled input can reach AI agent prompts
  • Evaluating agentic action configurations (sandbox settings, tool permissions, user allowlists)
  • Assessing trigger events that expose workflows to external input (pull_request_target, issue_comment, etc.)
  • Investigating data flow from GitHub event context through env: blocks to AI prompt fields

When not to use it

  • Analyzing workflows that do NOT use any AI agent actions (use general Actions security tools instead)
  • Reviewing standalone composite actions or reusable workflows outside of a caller workflow context (use this skill when analyzing a workflow that references them via uses:)
  • Performing runtime prompt injection testing (this is static analysis guidance, not exploitation)
  • Auditing non-GitHub CI/CD systems (Jenkins, GitLab CI, CircleCI)
  • Auto-fixing or modifying workflow files (this skill reports findings, does not modify files)

Choose the right scope

Packs that include this skill

Download only this method or take it together with the rest of its professional area.

This page

Individual skill

The smallest useful download, prepared for a web project or an agent.

Choose format →
Professional pack

AI for Inteligencia e Investigación

This skill plus the other methods selected for this professional area.

Same method, different setup

Where will you use it?

We do not duplicate the skill for every platform. We keep one canonical method and explain the correct installation route.

Traceable by design

Source and licence travel with the file.

SkillsBundle catalogues material of its own and from third parties. Inclusion does not claim original authorship. The individual ZIP preserves the canonical catalogue path and includes the applicable licence notices.

Catalogue path
skills/transversal/knowledge/trailofbits-skills/plugins/agentic-actions-auditor/skills/agentic-actions-auditor
Ficha origin
Extracted from SKILL.md
Read terms and licence policy →

Start with one real task

Install the method. Keep your judgement.

Choose format