Install payload
Install payload is broadly covered in current results.
100% (8/8)
2 trusted · 6 review in this set — compare to see which signals differ.
8 results in this view
3 trust signals differ in this sample: Package trust, Source provenance, Submitter
Signals differ on Package trust, Source provenance, Submitter — add entries to compare before you install.
Rollout signal scan
Biggest gaps: metadata review, package integrity. 0 entries have 2+ required gaps.
Install payload
Install payload is broadly covered in current results.
100% (8/8)
Most at-risk entries in this view
GitHub Actions Security Review Capability Pack Skill
No required rollout gaps
GitHub Actions Validator
No required rollout gaps
GitHub Artifact Attestation Provenance Capability Pack Skill
No required rollout gaps
/ci-failure-triage - CI Failure Triage Command for Claude Code
No required rollout gaps
Claude Code GitHub Actions Review Workflow
No required rollout gaps
Adoption queue
0/8 visible results are ready for staged adoption under this preset.
1 blockers: Metadata review
70/100
Request metadata review from maintainers or internal owners.
skills/github-actions-ai-cicd · trust trusted · confidence 83%
1 blockers: Metadata review
70/100
Request metadata review from maintainers or internal owners.
skills/github-actions-secure-cicd-capability-pack · trust trusted · confidence 83%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
commands/ci-failure-triage · trust review · confidence 67%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
guides/claude-code-github-actions-review-workflow · trust review · confidence 67%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
skills/github-actions-security-review-capability-pack · trust review · confidence 67%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
hooks/github-actions-workflow-validator · trust review · confidence 67%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
skills/github-artifact-attestation-provenance-capability-pack · trust review · confidence 67%
1 blockers: Metadata review
50/100
Request metadata review from maintainers or internal owners.
Collect package checksum or signed artifact information.
agents/open-source-pr-security-review-agent · trust review · confidence 67%
Decision confidence
2/8 results are high-confidence for the selected preset.
Confident candidate for staged adoption.
74/100
skills/github-actions-ai-cicd · trust trusted
Confident candidate for staged adoption.
74/100
skills/github-actions-secure-cicd-capability-pack · trust trusted
Address Metadata review, Package integrity before broader rollout.
54/100
commands/ci-failure-triage · trust review
Address Metadata review, Package integrity before broader rollout.
54/100
guides/claude-code-github-actions-review-workflow · trust review
Address Metadata review, Package integrity before broader rollout.
54/100
skills/github-actions-security-review-capability-pack · trust review
Address Metadata review, Package integrity before broader rollout.
54/100
hooks/github-actions-workflow-validator · trust review
Address Metadata review, Package integrity before broader rollout.
54/100
skills/github-artifact-attestation-provenance-capability-pack · trust review
Address Metadata review, Package integrity before broader rollout.
54/100
agents/open-source-pr-security-review-agent · trust review
Freshness distribution
Median age 54 days; 5 fresh, 3 aging or stale of 8 scanned.
Theme distribution
100% of this view shares the top theme. Leading themes: github-actions, ci-cd, devops.
22 distinct themes across 8 scanned
Expert GitHub Actions capability skill for secure workflow architecture, token minimization, supply-chain controls, and CI reliability.
Build intelligent CI/CD pipelines with GitHub Actions, AI-assisted workflow generation, automated testing, and deployment orchestration.
Expert GitHub Actions security review capability pack applying documented workflow hardening, GITHUB_TOKEN least privilege, secrets handling, and fork PR safety checks from official GitHub Actions security documentation.
Validates GitHub Actions workflow files for syntax errors and best practices.
Expert skill for reviewing GitHub Artifact Attestations, release artifact digests, workflow provenance, OIDC boundaries, and public release evidence before an AI agent recommends or publishes build outputs.
Slash command that triages a failing GitHub Actions run: it pulls the failed job logs with the GitHub CLI, isolates the first real error, classifies the failure (test, lint, type, build, dependency, or flaky), and proposes a targeted, minimal fix with the exact command to reproduce it locally.
Set up Claude Code GitHub Actions for pull request review: install the Claude GitHub app, store ANTHROPIC_API_KEY in secrets, pin anthropics/claude-code-action to an audited commit SHA with least-privilege permissions, and follow documented security practices.
Source-backed agent for security review of open-source pull requests, including untrusted fork boundaries, GitHub Actions permissions, secret and code scanning, dependency review, provenance signals, and maintainer-owned merge recommendations.