Cicd Pipeline Security

Security review and hardening for GitHub Actions CI/CD pipelines. Use when reviewing workflow files (.github/workflows/), auditing third-party actions, checking secret exposure in CI, reviewing deployment pipelines, or investigating CI/CD supply chain attacks. Covers the tj-actions/changed-files compromise (23K repos, March 2025), Trivy GitHub Actions compromise (March 2026), Clinejection (prompt injection → cache poisoning → npm publish, Feb 2026), Shai Hulud attacks, workflow injection via issue/PR titles, cache poisoning, secret exfiltration, and the full taxonomy of GitHub Actions attack vectors.

nickgallick d4be679 9.2 KB Updated 0 repo stars

File contents

nickgallick/perlantir-fleet/tree/main/workspace-forge/skills/cicd-pipeline-security commit d4be67943e

Frequently asked questions

npx skillmds add nickgallick/cicd-pipeline-security