.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/github-ops/security
home/skills/github-ops/security
daymade avatar

github-ops — security audits

Flagged by auditors

Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.

  • Gen Agent Trust Hub

    fail

    This skill provides powerful GitHub management capabilities but introduces significant security risks. It includes instructions to bypass organizational policy checks (JIRA enforcement) and is highly vulnerable to Indirect Prompt Injection. A malicious actor could embed instructions in Pull Requests or Issues that the agent might execute, leading to unauthorized code merges, secret modifications, or workflow triggers. The heavy use of shell pipes and xargs also increases the risk of command injection from untrusted data.

    Risk: HIGHPROMPT_INJECTIONCOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATIONCREDENTIALS_UNSAFEFeb 15, 2026Full report
  • Socket

    pass

    No alerts

    Mar 18, 2026Full report
  • Snyk

    warn

    Risk: MEDIUM · No issues

    Risk: MEDIUMFeb 15, 2026Full report
  • Runlayer

    warn

    5/6 files flagged

    Risk: MEDIUMFeb 21, 2026Full report
  • ZeroLeaks

    pass

    Score: 93/100 · 2 sections analyzed

    Risk: NONEApr 16, 2026Full report